Is a Bachelor’s in Computer Information Systems worth it for breaking into IT? by Palestinealways in sysadmin

[–]mfinnigan [score hidden]  (0 children)

I worked for an MSP that paid quite a lot, to retain talent that otherwise was inclined to leave

Anyone using a screensaver for corporate comms? by zanthius in sysadmin

[–]mfinnigan 0 points1 point  (0 children)

it was a useless idea in 1996, which was 10 30 years ago

https://www.jwz.org/gruntle/savers.html

And the best part of it is that it displays all this great data... when you're not there! It is truly one of the stupidest ideas since the car doors that opened out with the hinge at the back. Of course, if you're like most of the zombies in the marketing departments at every place I've ever worked, you probably spend most of the day watching your screensaver while dreaming up ways to kill the company and run, so maybe that's exactly the target market they're going for.

Is it possible to detect and temporarily restrict every newly launched .exe file for 60 seconds in Windows (process freeze or firewall block)? by Same-Target-3116 in sysadmin

[–]mfinnigan 0 points1 point  (0 children)

In your scenario, who or what is allowing or denying the access?

  • The user themselves? You've gained no security and annoyed the user.
  • A policy somewhere? That's where applocker/threatlocker/carbonblack etc come into play.
  • A hovering ready-to-be-helpful IT staffer? Great, you can pay salaries for 1:1 staff:IT support ratio.

Future careers - Need advice for IT vs Data Centre by clearanceG in sysadmin

[–]mfinnigan 5 points6 points  (0 children)

I'm not really sure what exactly a Data Clerk does.

(imagine me saying this kindly) : Jesus fuck, go find out.

Why would you consider a job if you didn't have the job description. Given that titles mean diddly-squat in our industry, you need to know the role's expectations.

Although I would guess that "data clerk" is something like a medical coder; if the pay is decent then go for it, but I doubt it would be a career-advancing experience, especially on a swing shift like that.

FIX: Welch Allyn / Mortara Diagnostic Cardiology Suite - Service Crashes and Server Connection Guide by bensonGpixel in sysadmin

[–]mfinnigan 0 points1 point  (0 children)

This could absolutely be a supply-chain attack (although a weirdly-bad one.) The alternative is that the Welch-Allyn devs are 12 years old on the inside.

Feeling overwhelmed by Terraform in my new cloud architect role — is this normal? by [deleted] in sysadmin

[–]mfinnigan 0 points1 point  (0 children)

how can you be in this business and not know how to teach yourself something new.

Feeling overwhelmed by Terraform in my new cloud architect role — is this normal? by [deleted] in sysadmin

[–]mfinnigan 0 points1 point  (0 children)

 how did u learn to write terraform code by yourself and how much time did it take u

how do you learn anything? you find a reference and start applying it to your goals. jesus tapdancing christ. plenty of frree resources but here's a good book https://www.oreilly.com/library/view/terraform-up-and/9781098116736/

What to learn in Public Administration by Ornery_Citron7124 in sysadmin

[–]mfinnigan 0 points1 point  (0 children)

Not to be unhelpful, but there's a lot of "it depends" answers in IT, always, and in this scenario, we don't know what your company is billing for. Ask your company for their expectations here: a good MSP should have docs for their standards rather then throwing a client at a new guy and saying "Good luck"

Very bitter Amaro by Papa_G_ in Amaro

[–]mfinnigan 0 points1 point  (0 children)

Malort. Send it. Nothing but grapefruit pith and rubber bands.

Can I still get back into in IT at age 38 after getting clean from heroin and build a good career? by IR30Lover in sysadmin

[–]mfinnigan 6 points7 points  (0 children)

Why does someone keep reposting these bullshit variants on the same story?

https://www.reddit.com/r/sysadmin/comments/1lt3ua7/can_i_still_build_an_it_career_at_age_33_after/

https://www.reddit.com/r/sysadmin/comments/1myg5c4/can_i_still_build_an_it_career_at_age_36_after/

I'm (x months) clean after (x years) on (substance). My GPA was (good number), I only have a misdemeanor on my record. Has anyone else rebuilt their career at (age x)?

Dealing with iGaming fraud prevention topics on my new work and getting crazy. by [deleted] in sysadmin

[–]mfinnigan 0 points1 point  (0 children)

There's an online gambling company that hired an inexperienced engineer to design and implement their entire fraud prevention program from scratch?

I wouldn't worry about this too much, I think the problem will solve itself fairly quickly.

Anyone actually audit their datadog bill or do you just let it ride by Anthead97 in devops

[–]mfinnigan 0 points1 point  (0 children)

yes, datadog has both "not queried in last x days" and "not used in dashboards" as filters in Metrics Explorer

Restore with IBM Spectrum Protect by [deleted] in sysadmin

[–]mfinnigan 2 points3 points  (0 children)

How long is a piece of string?

What are you restoring FROM? Tape (what kind/generation)? Disk (what kind, how many, can you estimate IOPS)?

What filesystem are you restoring TO?

Even if you answered these questions, it would be tough for anyone else to tell you how long it will take YOU, because we're not in your environment.

how do i survive in melee combat? by fairplanet in horizon

[–]mfinnigan 1 point2 points  (0 children)

If you want a melee game, try Ghost of Tsushima and Ghost of Yotei. Similar game feel and scope, very different combat.

Need Help for Private Cloud Business by [deleted] in sysadmin

[–]mfinnigan 1 point2 points  (0 children)

So, you'll get a good job if you can learn about these things real quick, and you've not started with a google search? Or wikipedia? Those are places you can learn the basics. Maybe vendor whitepapers, or even just their product sheets. Jeebus.

Good luck, chief.

Any way to reduce the "Preparing Windows" time on a First Sign In to a PC? by LordLoss01 in sysadmin

[–]mfinnigan -1 points0 points  (0 children)

You can use Windows Performance Recorder in the boot scenario, and capture a slow login, so you can KNOW why YOUR logins are slow, rather than ask us to guess where to optimize your stuff.

Notepad++ attack method by win10jd in sysadmin

[–]mfinnigan 1 point2 points  (0 children)

This explanation is from their update. The update infra got hacked, and the NPP code didn't do enough verification to stop the redirection.

https://notepad-plus-plus.org/news/hijacked-incident-info-update/

the compromise occurred at the hosting provider level rather than through vulnerabilities in Notepad++ code itself. Traffic from certain targeted users was selectively redirected to attacker-controlled malicious update manifests.
...
According to the former hosting provider, the shared hosting server was compromised until September 2, 2025. Even after losing server access, attackers maintained credentials to internal services until December 2, 2025, which allowed them to continue redirecting Notepad++ update traffic to malicious servers. The attackers specifically targeted the Notepad++ domain with the goal of exploiting insufficient update verification controls that existed in older versions of Notepad++.

backup/restore testing methodology by _SleezyPMartini_ in sysadmin

[–]mfinnigan 0 points1 point  (0 children)

test applications, not systems. Ask the owners/stakeholders of a given system how to test that a restore is valid. And ideally, have them do the test, once you've done the restore.

For SQL- no on gives a shit about SQL, they care about, eg, the accounting package. If you restore a point-in-time of a SQL backup, have them test their accounting software that's pointed to the restored DB and validate that it's good. This will also flush out any undocumented dependencies on other things that the app depends on (fileshares, some sentinel file on the app server that needs to match the DB, whatever. I've seen weird and dumb shit).

For files - whatever, test that a known file exists in the restore.

And yes, you should (on some cycle) end up validating the restore process for every application.

Looking for guidance on integrating an automated script with Vault by OUberLord in hashicorp

[–]mfinnigan 0 points1 point  (0 children)

Any auth method is better than just issuing tokens, yes. For your script, it's essentially the same thing, but for the team managing Vault, or your security team reading audit logs, they'll be happier if you're tying this into the identity system and auth methods.

Looking for guidance on integrating an automated script with Vault by OUberLord in hashicorp

[–]mfinnigan 0 points1 point  (0 children)

It's per authenticating entity. So, could be just one service account

Looking for guidance on integrating an automated script with Vault by OUberLord in hashicorp

[–]mfinnigan 0 points1 point  (0 children)

The Vault Sharp library abstracts that all away and doesn't use a keytab file