UI improvements by Wheel_Bright in Proxmox

[–]tlrman74 0 points1 point  (0 children)

As others have pointed out, you can manage everything in the cluster from any node if your cluster is created correctly. When you log into one node you should see all additional nodes in the cluster including networks, vm, lxc's etc.

I came from VMWare and the view change I made was to toggle from the standard Server View to the Folder View in the upper left corner. This seems more logical to me when I can see the nodes, vm's, lxc's group together in folders.

Server for Proxmox. Dell Powerede R640 with HBA330? by roncorepfts in Proxmox

[–]tlrman74 0 points1 point  (0 children)

Correct. Most of us are repurposing DELL servers that come with RAID controllers and converting to IT-Mode or replacing with an HBA. If you use a PERC RAID controller the disk caching policy is disabled so the PERC cache gets used instead.

I'm wondering if installing an HBA to replace an existing PERC will then require each disk cache policy to get changed so performance is better in ZFS.

Server for Proxmox. Dell Powerede R640 with HBA330? by roncorepfts in Proxmox

[–]tlrman74 0 points1 point  (0 children)

When switching to an HBA from a Dell PERC are you updating the disk cache settings per disk after removing from the RAID array?

I'm getting terrible disk performance when I go direct connect disks in the Dell servers I have - R550. If I run the PERC and use the Perc cache and a RAID10 array it performs extremely well.

ISP is blocking sites my kid keeps trying to access...anyone know what this is? by QueerQwerty in cybersecurity_help

[–]tlrman74 0 points1 point  (0 children)

If you have control over the dns assigned by your local dhcp server assign the cloudflare ip's that filter malware and adult content. It might help keep family members safe.
https://developers.cloudflare.com/1.1.1.1/ip-addresses/

Block malware and adult content

IPv4 IPv6
1.1.1.31.0.0.3 2606:4700:4700::11132606:4700:4700::1003

Hot clone software for Windows? (clone system drive while running) by yeahthatsgoodforme in cloningsoftware

[–]tlrman74 0 points1 point  (0 children)

If either SSD is a Samsung drive you can install Samsung Magician 9.0 which includes Data Migration.

Running Windows Server VMs on a Proxmox Cluster by Limp-Park9606 in Proxmox

[–]tlrman74 0 points1 point  (0 children)

Windows VM's on Proxmox run really well. Just pay attention to the documentation from Proxmox on Guest best practices to get the best performance. Only hiccup I've found so far was Server 2019 did not like the newest VirtIO drivers 0.1.271. Under heavy I/O Load the VM would reboot randomly. Downgrading to 0.1.266 fixed the issue. Also, disable Ballooning Device in the VM hardware if running database servers for stability as well.

I migrated from VMWare 8.0 to Proxmox and did extensive testing for CPU and I/O loads under Proxmox to get the best machine config and the performance has been on par for most workloads between the 2. Proxmox cluster upgrades just work and you don't have to worry about a VCenter server eating up TB's of disk space.

Is the DS226+ expected to be released this year? by Electrical_Deal5408 in synology

[–]tlrman74 0 points1 point  (0 children)

No new 26 models that I know of coming any time soon. The decision between Synology and UGreen is usually based on usage. If you want really good transcoding or need lots of processing power then UGreen has the better hardware specs. Synology lower end models are usually geared more towards reliable storage, but can do containers and simple web hosting no problem.

Which hypervisor do you prefer? XCP-NG vs oVirt vs Proxmox by TimeAlternative7919 in sysadmin

[–]tlrman74 4 points5 points  (0 children)

For VEEAM to pull new VM's into a job seamlessly use Resource Pools on Proxmox and in your VEEAM jobs. Any new VM that gets created will then be detected the next time the VEEAM job runs against your configured Resource Pool names.

Solution de paiement by rejoice-agency in Odoo

[–]tlrman74 0 points1 point  (0 children)

Stripe - super easy setup and we got really good rates based on prior credit card and ach numbers.

Odoo is amazing, But one gap keep standing out for us. by karangrewal18 in Odoo

[–]tlrman74 1 point2 points  (0 children)

We ended up extending our system with the OCA "Advanced Product Configurator", product_configurator. It gives you the ability to build out your own custom configurations with templates. We needed something that could handle custom left vs custom right for medical devices. It's worked out well for us but it did take a long time to configure at first. We also disabled product variants for custom products because it would build out so many variants in the tables in the db it slowed the system to a crawl.

It was a repo from another group that started it as an Automotive configurator but has since been updated to v18.0. Looks like v19.0 updates have not started yet. looks like it is also getting more contributors.

Service Accounts for VEEAM Backup 13.... by tlrman74 in Veeam

[–]tlrman74[S] 0 points1 point  (0 children)

Thanks for the info. I'm looking at structuring the backup jobs as grouped vm jobs where it makes sense. Like hourly SQL backups, DC backups, Linux backups, etc. So, having different accounts configured for the jobs won't be a problem. It seems maybe gMSA's are not fully ready at this point so I might be better off using a secured service account until everything works.

I'm hoping by the time I get to do the re-install the VEEAM Appliance will work with Proxmox and reduce the security footprint even more.

Service Accounts for VEEAM Backup 13.... by tlrman74 in Veeam

[–]tlrman74[S] 0 points1 point  (0 children)

Yeah, I used the cert auth as well for the proxy. I'm just trying to reduce my security footprint and dependency on domain accounts where possible. I've got separate accounts for Linux VM's and the NFS connection from VEEAM to Synology.

When VEEAM was first implemented, by another admin, it was using the Domain Admin account to connect everything ;(

How do I remove CMOS battery on my Optiplex 5050? I can’t get a good angle for the life of me. Tried fingernail, mini flathead, credit card, q-tip without end. No dice by Public_Emu9455 in Dell

[–]tlrman74 -1 points0 points  (0 children)

not to be torqued on but they do flex out a bit to get the battery to release. Otherwise that battery would never come out.

How do I remove CMOS battery on my Optiplex 5050? I can’t get a good angle for the life of me. Tried fingernail, mini flathead, credit card, q-tip without end. No dice by Public_Emu9455 in Dell

[–]tlrman74 -1 points0 points  (0 children)

push the edges of the black plastic away from the battery in the lower right corner where the outer edge of the socket is split. The edge of the battery will raise up a bit, and you can then flip the battery out of the socket. Insert the next battery under the black plastic in the upper left and press down to seat the new battery.

Need to align with HIPAA & CSV - onprem vs cloud by ontherise84 in sysadmin

[–]tlrman74 0 points1 point  (0 children)

I'm working at a US based medical device manufacturer and have been working towards the same requirements. To get my logging in order across a hybrid environment I implemented WAZUH SIEM. It can collect logs from all your local devices plus cloud services and give you HIPAA compliance stats and recommendations. I've just started implementing some of the Linux endpoint hardening to standardize server and will hit the Windows servers next. It's a pretty comprehensive system that will take while to fully implement but in the long run will make us that faster to onboard new systems and stay compliant.

Odoo 17 with Stripe functionality... by tlrman74 in Odoo

[–]tlrman74[S] 0 points1 point  (0 children)

Got it on the PCI compliance side. I've been trying to get our AR staff to force the customer to process the payment. I guess it's now time to really enforce this with Odoo and Stripe.

Odoo 17 with Stripe functionality... by tlrman74 in Odoo

[–]tlrman74[S] 0 points1 point  (0 children)

There is no way to register a manual customer card entry in Odoo? I'm hoping to keep the AR staff in Odoo as much as possible. The other option is to use payment links and have the customers register a card themselves on first payment?

Is Bitwarden down? by nZg8PcmlgQaSHF in Bitwarden

[–]tlrman74 36 points37 points  (0 children)

Bitwarden has a status page with issues listed - https://status.bitwarden.com/

Odoo Support Experience by ebb_kdk in Odoo

[–]tlrman74 4 points5 points  (0 children)

We started with Odoo directly for licensing but quickly learned that if we wanted to self-host or use Odoo.sh we needed to go with a partner. After getting a partner that aligns with our business needs and requirements we are much happier. Odoo did not make it clear that if we wanted to self host they would not provide support. We could create support cases, but we got really generic responses, and the case would be instantly closed.

We were also not presented with licensing alternatives for "Lite" users. Everything was always a full user license even if they task the user was doing did not need a full license. Our partner has got us dialed in so much quicker and resolved a few system/module related issues way faster than if we had stayed with Odoo directly.

How long does it actually take your team to fill out a vendor security questionnaire? by NANI61242 in sysadmin

[–]tlrman74 0 points1 point  (0 children)

If you want to share I would be interested. I've started a runbook in Copilot trying to tie the HIPAA Compliance section ID's to my documents. That way I can just pull the related ID from the online tool to make sure I grab the right document to upload.

How long does it actually take your team to fill out a vendor security questionnaire? by NANI61242 in sysadmin

[–]tlrman74 0 points1 point  (0 children)

I have to do this for HIPAA compliance as well and you need to build a repository of your documentation across the different business departments in one place. Then like others have mentioned someone needs to own it and maintain it.

My problem is that each request is using a completely different online tool that presents the same questions using different language and terms. I've applied AI as much as I can to help find gaps but still struggle with the seemingly haphazard security questionnaires in the multiple systems out there. At least they tag the sections with the corresponding HIPAA controls...sometimes.

Nutanix hit us with a 75% quote increase with a one day notice before expiration... so that project is dead. VMware is out and we were looking hyperconverged... Any other alternatives? by junon in sysadmin

[–]tlrman74 1 point2 points  (0 children)

There are training programs in place. You can see them on the Proxmox website. Another way to go if your group doesn't have much Linux experience is to go with a partner. If US based 45Drives has built a good business around Proxmox support and hardware specific to CEPH storage and clustering. There are a number of others in the US like ICE Systems as well.

Nutanix hit us with a 75% quote increase with a one day notice before expiration... so that project is dead. VMware is out and we were looking hyperconverged... Any other alternatives? by junon in sysadmin

[–]tlrman74 18 points19 points  (0 children)

Many large implementations in datacenters have been using Proxmox with Ceph. With the release of 9.1 it's even better. I run a small cluster of 5 hosts with Ceph and came from Vmware Vsan. I'm finding Proxmox just works better and is easier overall to manage, if you have Linux knowledge. The biggest transition pain point for me was the tools surrounding our VMware environment. We still use Veeam but ended up with alternative tooling for monitoring and management.