RE: auditing Windows security logs, File Deletion on Win2k8

2010-07-22 Thread Free, Bob
+1 Randy's site is probably the most comprehensive site there is on auditing. I keep saying I will take one of his F2F classes but I never find the time. He gives some pretty good free webcasts as well if you are interested in the windows auditing world. He has actually been branching out beyond a

RE: Why no Internet Security Awareness Training?

2010-07-22 Thread Free, Bob
Infosec training is a mandatory requirement here. Part of the yearly core coursework we have to do. From: Erik Goldoff [mailto:egold...@gmail.com] Sent: Thursday, July 22, 2010 8:15 AM To: NT System Admin Issues Subject: Re: Why no Internet Security Awareness Training? because they don't h

RE: Net Use requires password

2010-07-22 Thread Free, Bob
27;10.0.50.27': WTF? -Original Message- From: Free, Bob [mailto:r...@pge.com] Sent: Thursday, July 22, 2010 10:16 AM To: NT System Admin Issues Subject: RE: Net Use requires password Did you test the secure channel? Success should look something like this- C:\Admin\Util>nltest /

RE: Net Use requires password

2010-07-22 Thread Free, Bob
Did you test the secure channel? Success should look something like this- C:\Admin\Util>nltest /sc_query:DOMAINname Flags: 30 HAS_IP HAS_TIMESERV Trusted DC Name \\ABC08 Trusted DC Connection Status Status = 0 0x0 NERR_Success The command completed successfully -Original Message- From:

RE: Outlook 2007 Calendar Log Viewer

2010-07-21 Thread Free, Bob
Did you mean (*cough*MBS*cough*) ? J From: Joe Tinney [mailto:jtin...@lastar.com] Sent: Wednesday, July 21, 2010 12:06 PM To: NT System Admin Issues Subject: Outlook 2007 Calendar Log Viewer We have one user who is complaining of 'rampant' calendaring issues and is really making a big

RE: Anyone experienced Gotchas in Moving to Windows 2008 R2 and Exchange 2010 with Blackberry 5 server?

2010-07-21 Thread Free, Bob
NSPI connections limited to 50 per user http://support.microsoft.com/kb/949469 was mentioned to us to be on the lookout for by the MS PFE we had onsite. I checked w/my BB guy and he said he had been waiting for BES 5 SP2 that was released about a week ago and it officially supports W2K8 R2. He

RE: Password Access Windows 2003 and Above Servers

2010-07-21 Thread Free, Bob
-Original Message----- From: Free, Bob [mailto:r...@pge.com] Sent: Wednesday, July 21, 2010 11:29 AM To: NT System Admin Issues Subject: RE: Password Access Windows 2003 and Above Servers Sometimes people have a need to know because it's hardcoded in programs, services run with it

RE: Password Access Windows 2003 and Above Servers

2010-07-21 Thread Free, Bob
Password Access Windows 2003 and Above Servers No prob. I, personally, am not aware of anything that can *crack* a password. Apparently there are some tools to do that, but why bother when you can just *reset* the password? :-) -Original Message----- From: Free, Bob [mailto:r...@pge.c

RE: Password Access Windows 2003 and Above Servers

2010-07-21 Thread Free, Bob
ng that'll let you "crack" the password. -Original Message- From: Free, Bob [mailto:r...@pge.com] Sent: Wednesday, July 21, 2010 10:17 AM To: NT System Admin Issues Subject: RE: Password Access Windows 2003 and Above Servers Crack !=reset -Original Message- From: John

RE: Password Access Windows 2003 and Above Servers

2010-07-21 Thread Free, Bob
Crack !=reset -Original Message- From: John Aldrich [mailto:jaldr...@blueridgecarpet.com] Sent: Wednesday, July 21, 2010 7:10 AM To: NT System Admin Issues Subject: RE: Password Access Windows 2003 and Above Servers Well, you could try Pete Nordahl's NT Password Reset Disk. That can be f

RE: VMWare View, How are you handling AV? (Viper to be specific)

2010-07-02 Thread Free, Bob
Linking and SOM are totally different concepts...to me at least. Especially for the case of the DDP which is kind of a corner case because certain things can only be set there. From: Webster [mailto:carlwebs...@gmail.com] Sent: Thursday, July 01, 2010 6:36 PM To: NT System Admin Issues Subjec

RE: VMWare View, How are you handling AV? (Viper to be specific)

2010-07-02 Thread Free, Bob
e machine right? Dave From: Free, Bob [mailto:r...@pge.com] Sent: Friday, July 02, 2010 9:03 AM To: NT System Admin Issues Subject: RE: VMWare View, How are you handling AV? (Viper to be specific) Redirection is a rather limited approach unless you have all your workstations in a single OU

RE: VMWare View, How are you handling AV? (Viper to be specific)

2010-07-02 Thread Free, Bob
Redirection is a rather limited approach unless you have all your workstations in a single OU.perhaps useful for a staging OU but I'd prefer workstations be provisioned directly into their ultimate destination. Best practice IMO is to ACL off the computers container so it is off-limits, se

RE: VMWare View, How are you handling AV? (Viper to be specific)

2010-07-02 Thread Free, Bob
Domain\Computers is not an OU, it is a container, hence no GPO can be linked there. That is why it is generally "not used" by most enterprises. From: David Lum [mailto:david@nwea.org] Sent: Thursday, July 01, 2010 9:56 AM To: NT System Admin Issues Subject: RE: VMWare View, How are you han

RE: How to Xcopy files with a date range and owner

2010-06-25 Thread Free, Bob
I never did the actual discovery work itself but I was often tasked with obtaining the same data sets at different times for ediscovery. Some of them were huge and I found robocopy is definitely much more helpful in reducing the size of capturing the incremental changes. From: Brumbaugh, Luke [

RE: Password policy enforcement after a change

2010-06-16 Thread Free, Bob
, Free, Bob wrote: > I respectfully disagree that one is as good as the other in this > particular case but to each his own. I think the LDAP query approach is far more flexible and powerful, so it's good to be aware of the capability and have it available. Thanks for posting it. Now tha

RE: Technet

2010-06-16 Thread Free, Bob
Déjà vu. That is what I had for a long time before I got TechNet Plus, subsequently I was 'upgraded' to MSDN The basic TechNet used to be pretty reasonable and it was a must-have back in the day if you made a living supporting MS technology From: Jeff Bunting [mailto:bunting.j...@gmai

RE: Password policy enforcement after a change

2010-06-16 Thread Free, Bob
] Sent: Tuesday, June 15, 2010 5:15 PM To: NT System Admin Issues Subject: Re: Password policy enforcement after a change On Tue, Jun 15, 2010 at 8:11 PM, Free, Bob wrote: > You don't need a tool, just do an LDAP query for pwdLastSet. I would use > adfind as it will decode the timestamps

RE: Password policy enforcement after a change

2010-06-16 Thread Free, Bob
.com] Sent: Tuesday, June 15, 2010 7:15 PM To: NT System Admin Issues Subject: Re: Password policy enforcement after a change On Tue, Jun 15, 2010 at 8:11 PM, Free, Bob wrote: > You don't need a tool, just do an LDAP query for pwdLastSet. I would use > adfind as it will decode the timest

RE: Server license type

2010-06-16 Thread Free, Bob
I believe slmgr.vbs with the -dlv arg will do it -Original Message- From: Joseph Heaton [mailto:jhea...@dfg.ca.gov] Sent: Wednesday, June 16, 2010 8:18 AM To: NT System Admin Issues Subject: Server license type Anyone know of a way to tell what type of license is installed on a server?

RE: Password policy enforcement after a change

2010-06-15 Thread Free, Bob
You don't need a tool, just do an LDAP query for pwdLastSet. I would use adfind as it will decode the timestamps, dump to a csv and massage in excel. Something along the lines of - ADFIND -default -f "(&(objectCategory=person)(objectClass=user))" pwdLastSet -tdc -csv -Original Message-

RE: Service accounts that want local admin

2010-06-09 Thread Free, Bob
Yes there is that facility in R2. It is a big step forward. No more non-expiring passwords, no password management hassles like in the current solution and no one knows the passwords so they can't bypass other controls and logon interactively with them. There are some limitations, one system pe

RE: Cisco ASA - Domain Admin account?

2010-06-08 Thread Free, Bob
Sounds like typical Cisco BS to me. They typically say their apps require much higher privs to install or run than they really do. If an app needs to read or write specific attributes, you delegate permissions to them individually not the entire directory and everything else in it. I've been o

RE: Service accounts that want local admin

2010-06-08 Thread Free, Bob
Run them as local service or network service, worst case local system. I would not ever run a service account as Administrator or Domain Admin on a DC. We stopped doing that years ago, took a while to get there because of some crummy legacy stuff but I wouldn't even consider it today. From: D

RE: DC a DC but not get handed authentication requests?

2010-06-08 Thread Free, Bob
There are ways to make it not service requests in most cases, SRV weighting or an isolated site with a /32 mask are a couple. Similar to the old lag site concept. Brian Desmond has an article on his blog abuot similar scenarios with sites/subnets. From: David Lum [mailto:david@nwea.org]

RE: GPO question

2010-06-04 Thread Free, Bob
Any server actually not just DCs. Short answer, in the older OSs the event logs are memory mapped and need contiguous portion of memory. Depending on the system, as they near 300MB total, bad things can happen. That is from memory (pun intended) better details can be found J From: David Lum

RE: Server Core

2010-06-03 Thread Free, Bob
ect: Re: Server Core On Thu, Jun 3, 2010 at 5:41 PM, Free, Bob wrote: > What is interesting is if you talk to the product group and PSS the > adoption of Server Core, and RODC for that matter, is abysmal, > particularly based on all the desire for the features from customers > and the a

RE: Server Core

2010-06-03 Thread Free, Bob
Interesting, and good to know. Still, the more they can support on core, the better, IMHO. On Thu, Jun 3, 2010 at 12:48, Free, Bob wrote: > Remember the purpose of core was not to be an application platform but to >  “provide a minimal environment for running specific server roles that >

RE: Server Core

2010-06-03 Thread Free, Bob
Remember the purpose of core was not to be an application platform but to “provide a minimal environment for running specific server roles that reduces the maintenance and management requirements and the attack surface for those server roles.” http://www.microsoft.com/windowsserver2008/en/us/

RE: OK boys and girls, how do you go about...

2010-06-01 Thread Free, Bob
You could script setting the dirty bit with fsutil- fsutil dirty set C: If a volume's dirty bit is set, this indicates that the file system may be in an inconsistent state. The dirty bit can be set because the volume is online and has outstanding changes, because changes were made to th

RE: What's your requirement to allow a user DA?

2010-05-27 Thread Free, Bob
r and remotely executing. "But no one uses the internet on the exchange server so we don't have AV on it" Regards, Phil Garven Sunbelt Software ____ From: Free, Bob [mailto:r...@pge.com] Sent: Thursday, May 27, 2010 4:43 PM To: NT System Admin I

RE: What's your requirement to allow a user DA?

2010-05-27 Thread Free, Bob
2-3 is max for any environment IMO. Everything else should be dome with delegations. They must be your most proficient admins, not any old new hire. Check out some of joe Richard's rants about it, he ran a multi-nationl Global 5 firm with 3 EA /DA level admins who were, as he put it, all close

RE: Big Changes Ahead for IT - Anyone seen this?

2010-05-26 Thread Free, Bob
+1 brings up very old memories :-] From: Don Kuhlman [mailto:drkuhl...@yahoo.com] Sent: Wednesday, May 26, 2010 10:41 AM To: NT System Admin Issues Subject: Re: Big Changes Ahead for IT - Anyone seen this? I like that one - I learned it the other way around :0 All

RE: Domain membership change

2010-05-25 Thread Free, Bob
Agree with Brian, that is one of the primary things you are trying to protect against IMNSHO. The quick interloper who is bypassing proper change controls and/or trying to cover their tracks. Also why it is a good idea to alert on 517 (or 1102 in newer OSs) From: Brian Desmond [mailto:br...@

RE: DNS Cache - Do you ever clean it up?

2010-05-21 Thread Free, Bob
If you have any Adobe crap it's now a weekly rebootwho was that who wins again? Certainly not us. From: Micheal Espinola Jr [mailto:michealespin...@gmail.com] Sent: Friday, May 21, 2010 11:27 AM To: NT System Admin Issues Subject: Re: DNS Cache - Do you ever clean it up? Thanks Ben: I'

RE: Need WS2008 book recommendation

2010-05-19 Thread Free, Bob
The unleashed book had a very nice refresh for R2. http://www.amazon.com/Windows-Server-2008-R2-Unleashed/dp/067233092X/ref =pd_sim_b_8 -Original Message- From: Angus Scott-Fleming [mailto:angu...@geoapps.com] Sent: Wednesday, May 19, 2010 10:28 AM To: NT System Admin Issues Subject: N

RE: Quest ActiveRoles

2010-05-18 Thread Free, Bob
Hmmm, I just got an email from an engineer in Brazil for a case a pre-sales engineer opened on ARS. We have ARD for a long time and a case is trying to be made for an upgrade. Since ARD came from FastLane, the support was still out of Halifax last I heard but I'm not sure about ARS. @ Steven- Y

RE: Citrix Synergy

2010-05-14 Thread Free, Bob
I walked by twice on the way to the ball park, does that count? I snuck up on Brandon Shell Wed night and surprised him pretty good and told him to say hi to you From: Webster [mailto:webs...@carlwebster.com] Sent: Friday, May 07, 2010 8:42 PM To: NT System Admin Issues Subject: Citrix Syn

RE: Meet Your New Citrix Technology Professional!

2010-04-21 Thread Free, Bob
> Yup, that captcha I can't even read.. Me either. Must be in Sanskrit or something. Congrats Web, well deserved! From: Sherry Abercrombie [mailto:saber...@gmail.com] Sent: Wednesday, April 21, 2010 11:26 AM To: NT System Admin Issues Subject: Re: Meet Your New Citrix Technology Pr

RE: Spontaneous server reboots

2010-04-21 Thread Free, Bob
same UPS when the server was rebooting? And it only affected the one server? Unfortunately for me, this is a production server - in this case a DC. Fortunately for me, it is just a backup DC so no one is missing it. Kyle B. Plummer From: Free, Bob [mailto:r...@pge.com] Sent: Wednesday, April

RE: McAfee DAT problems

2010-04-21 Thread Free, Bob
http://isc.sans.org/diary.html?storyid=8656&rss From: Erik Goldoff [mailto:egold...@gmail.com] Sent: Wednesday, April 21, 2010 8:48 AM To: NT System Admin Issues Subject: McAfee DAT problems Anyone else heard of problems with the latest McAfee DAT (5958) ??? Erik Goldoff IT Con

RE: Spontaneous server reboots

2010-04-21 Thread Free, Bob
from APC) that had nothing else on it. Still did the reboots. That's a good suggestion, though. I didn't think of that when I moved it. I was more concerned with isolating the server from the other ones. Thank you, Kyle B. Plummer From: Free, Bob [mailto:r...@pge.com] Sent: Wed

RE: Infragard

2010-04-21 Thread Free, Bob
>From what I have observed over the years it is generally larger companies with critical infrastructure involvement that have reps and they are usually at or near the executive level. For example, our Mgr of Infosec or his designee was involved. We actually used to get some pretty good information

RE: Spontaneous server reboots

2010-04-21 Thread Free, Bob
I have had similar spontaneous shutdowns that were unexplained till I realized they were actually caused by the APC UPS's in my lab/office. One did it nearly daily till I just happened to be there to observe it and realize what was going on. From: Kyle Plummer [mailto:kplum...@nje.com] Sent: T

RE: Group membership updates

2010-04-20 Thread Free, Bob
shortcut on their desktop. I considered klist, but does that not just purge the Kerberos token and you have to reacquire a new one at login time? I've never used it before - that was just what I read in a couple of forums. Cheers, On 20 April 2010 16:40, Free, Bob wrote: Is the issue around Ker

RE: Group membership updates

2010-04-20 Thread Free, Bob
Is the issue around Kerberos tickets? Is it that YOU want to update Their memberships or you want Them to be able to do it to themselves? You could have them purge their tickets with klist if they are somewhat savvy... From: James Rankin [mailto:kz2...@googlemail.com] Sent: Tuesday, April 20,

RE: Security - Marc Maiffret

2010-04-16 Thread Free, Bob
on the AD team and is now on the Exchange team and can explain DSAccess/ADProxy so that it actually makes sense). (Not to mention me, Ilse, Scott, Nicolas, David, Juergen, etc. etc. - but compared to the headliners, we are just filler.) Regards, Michael B. Smith Consultant and Exchange M

RE: Security - Marc Maiffret

2010-04-16 Thread Free, Bob
P http://TheEssentialExchange.com <http://theessentialexchange.com/> From: Free, Bob [mailto:r...@pge.com] Sent: Friday, April 16, 2010 11:59 AM To: NT System Admin Issues Subject: RE: Security - Marc Maiffret Yes, he has for a number of years. It was really ironic that my manager and I wer

RE: Security - Marc Maiffret

2010-04-16 Thread Free, Bob
m madly working to get my pre-conference workshop material done... Regards, Michael B. Smith Consultant and Exchange MVP http://TheEssentialExchange.com <http://theessentialexchange.com/> From: Free, Bob [mailto:r...@pge.com] Sent: Friday, April 16, 2010 11:59 AM To: NT System Admi

RE: Security - Marc Maiffret

2010-04-16 Thread Free, Bob
approved to go! I've finished my presentation slides and am madly working to get my pre-conference workshop material done... Regards, Michael B. Smith Consultant and Exchange MVP http://TheEssentialExchange.com From: Free, Bob [mailto:r...@pge.com] Sent: Friday, April 16, 2010 11

RE: Security - Marc Maiffret

2010-04-16 Thread Free, Bob
got approved to go! I've finished my presentation slides and am madly working to get my pre-conference workshop material done... Regards, Michael B. Smith Consultant and Exchange MVP http://TheEssentialExchange.com From: Free, Bob [mailto:r...@pge.com] Sent: Friday, April 16,

RE: Security - Marc Maiffret

2010-04-16 Thread Free, Bob
ichael B. Smith Consultant and Exchange MVP http://TheEssentialExchange.com <http://theessentialexchange.com/> From: Free, Bob [mailto:r...@pge.com] Sent: Friday, April 16, 2010 11:59 AM To: NT System Admin Issues Subject: RE: Security - Marc Maiffret Yes, he has for a number of years. It was really

RE: Make the logo bigger: 10 rebranding disasters - U.S. business- msnbc.com

2010-04-16 Thread Free, Bob
LOL, reminded me of all the hilaritythat followed Accenture's folly... www.accidenture.com/ From: Andrew S. Baker [mailto:asbz...@gmail.com] Sent: Friday, April 16, 2010 6:44 AM To: NT System Admin Issues Subject: Make the logo bigger: 10 rebranding disasters

RE: Security - Marc Maiffret

2010-04-16 Thread Free, Bob
Yes, he has for a number of years. It was really ironic that my manager and I were chatting about him Wed night as his firm was doing some work with our infosec team because she knew he and I used to keep in contact, then this article hit the newsfeeds the next day. Maybe more eerily coincidental J

RE: "Professional" NetBooks?

2010-04-14 Thread Free, Bob
Heck I just upgraded mine Monday to win 7 pro in about 10 minutes with the windows anywhere process. The bits are already on the box (assuming win7 starter which is what most of them come with), buy a key online and off it goes. From: Mike Gill [mailto:lis...@canbyfoursquare.com] Sent: Wed

RE: vSphere Client annoying redraw

2010-03-31 Thread Free, Bob
/disclaimer- I know next to nothing about vmware We were having some annoying video issues with Vsphere client up to and including complete lockups in our lab sandbox and we got this from our vmware guy- http://kb.vmware.com/selfservice/microsites/search.do?language=en_US&cmd =displayKC&e

RE: dell rant [OT reply]

2010-03-23 Thread Free, Bob
entialExchange.com From: Free, Bob [mailto:r...@pge.com] Sent: Friday, March 19, 2010 8:10 PM To: NT System Admin Issues Subject: RE: dell rant [OT reply] Hey ...I used to make the 80 pound "motors" that drove the head assembly on those washing machines J Actually the I made

RE: OTish: Web programming, AD, delegation and the double hop issue

2010-03-19 Thread Free, Bob
> I know that Joe Kaplan is co-author on one of them: Can't go wrong with Joe Kaplan (and Ryan Dunn) http://directoryprogramming.net/ -Original Message- From: Kurt Buff [mailto:kurt.b...@gmail.com] Sent: Friday, March 19, 2010 5:16 PM To: NT System Admin Issues Subject: OTish: Web prog

RE: dell rant [OT reply]

2010-03-19 Thread Free, Bob
Hey ...I used to make the 80 pound "motors" that drove the head assembly on those washing machines J Actually the I made the coils that were part of the bobbins inside the motors. Less skilled workers made the heavy parts...LOL The engineers called them linear actuators and hated when some

RE: Determining Password Complexity Requirements (UNCLASSIFIED)

2010-03-19 Thread Free, Bob
(UNCLASSIFIED) Some of the requirements for contracts that provide services for the military require a custom ugina. We have one. It has it's own little domain. On Fri, Mar 19, 2010 at 1:11 PM, Free, Bob wrote: >> every time she tries to set a local account's password > >

RE: Determining Password Complexity Requirements

2010-03-19 Thread Free, Bob
'd nuke it and rebuild! ____ From: Free, Bob To: NT System Admin Issues Sent: Fri Mar 19 15:01:25 2010 Subject: RE: Determining Password Complexity Requirements Does it have a custom GINA? From: John Hornbuckle [mail

RE: Determining Password Complexity Requirements (UNCLASSIFIED)

2010-03-19 Thread Free, Bob
> every time she tries to set a local account's password Probably a custom GINA/password filter. (I think there's an echo in here J) Those also come in local versions The Army couldn't enforce the settings Larry gave below natively, they have to use *something* From: John Hornb

RE: Determining Password Complexity Requirements

2010-03-19 Thread Free, Bob
Does it have a custom GINA? From: John Hornbuckle [mailto:john.hornbuc...@taylor.k12.fl.us] Sent: Friday, March 19, 2010 10:46 AM To: NT System Admin Issues Subject: RE: Determining Password Complexity Requirements Thanks-we'll check this out. The other we

RE: Check for domain or local user

2010-03-18 Thread Free, Bob
look at the SID? From: Christopher Bodnar [mailto:christopher_bod...@glic.com] Sent: Thursday, March 18, 2010 1:56 PM To: NT System Admin Issues Subject: Check for domain or local user I have a script that is enumerating the members of a local group. what I'd like to do is see if the user

RE: 1gbps+ traffic?

2010-03-18 Thread Free, Bob
The core of our internal WAN has a mesh of redundant 10G links...it's not that uncommon anymore I don't think. From: Jon Harris [mailto:jk.har...@gmail.com] Sent: Thursday, March 18, 2010 6:33 AM To: NT System Admin Issues Subject: Re: 1gbps+ traffic? I would think Universities as well a

RE: CMD line way to change CD Rom drive letter

2010-03-18 Thread Free, Bob
LOL, same mental block but it is from VINES From: Malcolm Reitz [mailto:malcolm.re...@live.com] Sent: Thursday, March 18, 2010 6:02 AM To: NT System Admin Issues Subject: RE: CMD line way to change CD Rom drive letter I still have a mental block about assigning devices to Z: - must be a le

RE: National broadband - Now Cell/SAT Service

2010-03-17 Thread Free, Bob
First router I remember for EVDO PCMCIA cards was Kyocera. They were ultra cool in the day hooked up to a Wilson Trucker antenna up in the attic. Now they are commonplace...relatively Now that I think about it my MiFi is my 5th EVDO device and the first one that wasn't PCMCIA so I guess I've been

RE: National broadband

2010-03-17 Thread Free, Bob
The rest of the answer is 5 WiFi connections for the MiFi. No physical connections other than the mini USB that acts as either a charging port or direct EVDO connection if connected to USB. If it is connected via USB, WiFi is disabled. I never really understood why but that is how the device works.

RE: BuiltIn\Administrators group on a DC

2010-03-05 Thread Free, Bob
Administrators is a Domain Local Group that originates in the Builtin container and by default contains Domain Admins, Enterprise Admins and the administrator(500) account. Domain Admins is a Global Group that originates in the Users container, because of the scope, it's use can be more widespread

RE: Backup App recommendations

2010-03-04 Thread Free, Bob
+N We have been running it on hundreds of servers since the NT days when it fit on one floppy. The numbers are dwindling with the network collapsing into the datacenters and virtualization but if a server isn't on TSM, it's using UB. Great product & company. From: Andrew S. Baker [mailto:a

RE: See list of services, including logon account, of all servers

2010-03-04 Thread Free, Bob
scenario presented by the OP: "we need to change a password on an account we use to run services with". Regards, Michael B. Smith Consultant and Exchange MVP http://TheEssentialExchange.com -Original Message----- From: Free, Bob [mailto:r...@pge.com] Sent: Thursday, March 04, 2010 1

RE: See list of services, including logon account, of all servers

2010-03-04 Thread Free, Bob
> it doesn't list everything using "Local System" or "Network Service". You > really don't care about those I would respectfully disagree with that, I care a LOT about services running as Local System if they could be running as Local or Network Service. That is one of the main reasons why I go

RE: See list of services, including logon account, of all servers

2010-03-04 Thread Free, Bob
wmic will do it very nicely. It's all built-in to your OS :-) You can export to html table or csv. This is a starter, you can play with it to get the output you desire wmic /output:c:\folder\services.htm /node: hostname service list full / format:htable -Original Message- From: Michael L

RE: Corrupt DNS log

2010-03-03 Thread Free, Bob
The process is the same as in http://support.microsoft.com/kb/172156/ as far as I have always heard. I have also seen mentioned that you could possibly free up the handle to the DNS logs so you can rename them by stopping the service but that was on later versions of windows. Worth a try. -O

RE: Demote a DC that is primary DNS for a forest? - REVISED

2010-03-03 Thread Free, Bob
I agree with Michael in principal but I don't remove the cable. You get the same effect by disabling outbound replication from the SM with repadmin. Before repadmin had that option, pulling the cable was the way to go. Since I do all such work remotely it would really be a pain to have to have s

RE: DC moved from default DC OU

2010-03-02 Thread Free, Bob
. From: Free, Bob [mailto:r...@pge.com] Sent: Tuesday, March 02, 2010 11:42 AM To: NT System Admin Issues Subject: RE: DC moved from default DC OU Did you retarget the Default Domain Controllers Policy and any other GPOs to the new container? From: David

RE: DC moved from default DC OU

2010-03-02 Thread Free, Bob
Did you retarget the Default Domain Controllers Policy and any other GPOs to the new container? From: David Lum [mailto:david@nwea.org] Sent: Tuesday, March 02, 2010 7:16 AM To: NT System Admin Issues Subject: DC moved from default DC OU A couple of weeks

RE: system state backups

2010-02-26 Thread Free, Bob
Maybe not much help but it maps to - VSS_E_UNEXPECTED_PROVIDER_ERROR There are a lot of hits for that on %sesarchengineofchoice% C:\ADMIN\Util\Err>err 0x8004230f # for hex 0x8004230f / decimal -2147212529 : VSS_E_UNEXPECTED_PROVIDER_ERROR vss.h -Original

RE: 2008 for experiences 2003 admins

2010-02-26 Thread Free, Bob
Same here except it was replaced 2 weeks ago by the R2 update. I have the original available cheap :-) If you are looking to buy it, I would definitely be looking at the R2 update, it was an upgrade well abovve any expectations I had. From: Christopher Bodnar [m

RE: 2008 for experiences 2003 admins

2010-02-26 Thread Free, Bob
From: Christopher Bodnar [mailto:christopher_bod...@glic.com] Sent: Friday, February 26, 2010 9:47 AM To: NT System Admin Issues Subject: Re: 2008 for experiences 2003 admins That book seems to have taken up permanent residence on my desk at work. Chris Bo

RE: Storage server 2003 SLOW!!!

2010-02-23 Thread Free, Bob
The DS team at PSS has a great 2 part series on a methodology to test slow logons- http://blogs.technet.com/askds/archive/2009/09/23/so-you-have-a-slow-log on-part-1.aspx http://blogs.technet.com/askds/archive/2009/09/23/so-you-have-a-slow-log on-part-2.aspx From: Richard Stovall

RE: What is the latest version of RDP client for Win7?

2010-02-18 Thread Free, Bob
ervers. It's not worth it. From: Steven M. Caesare [mailto:scaes...@caesare.com] Sent: Thursday, February 18, 2010 4:12 PM To: NT System Admin Issues Subject: RE: What is the latest version of RDP client for Win7? That's unfortunately nebulous. -sc From: Free, Bob [mailto:r...

RE: IM raises its ugly head again...

2010-02-18 Thread Free, Bob
2010 4:41 PM To: NT System Admin Issues Subject: Re: IM raises its ugly head again... That's pretty sweet. Care to name the appliance? On Thu, Feb 18, 2010 at 15:57, Free, Bob wrote: > We support only the most basic IM services from the 3 major players' thick > clients, web

RE: IM raises its ugly head again...

2010-02-18 Thread Free, Bob
We support only the most basic IM services from the 3 major players' thick clients, web services or 3rd party clients won't work. IM traffic all goes through an appliance and is 100% logged, reviewed, archived etc. The solution ties to AD account of the logged in user same as the web proxy. Work

RE: What is the latest version of RDP client for Win7?

2010-02-18 Thread Free, Bob
x27;t remember what the issue was but they had problems connecting reliably to the server. Jon On Thu, Feb 18, 2010 at 2:36 PM, Free, Bob wrote: Yes bad on any 2008 server From: Sam Cayze [mailto:sam.ca...@rollouts.com] Sent: Thursday, February 18, 2010 6:15 AM To: NT System Admin Issue

RE: What is the latest version of RDP client for Win7?

2010-02-18 Thread Free, Bob
ssage- From: Kurt Buff [mailto:kurt.b...@gmail.com] Sent: Thursday, February 18, 2010 12:19 PM To: NT System Admin Issues Subject: Re: What is the latest version of RDP client for Win7? How about disabling IPv4? On Thu, Feb 18, 2010 at 11:35, Free, Bob wrote: > It is very strongly recomme

RE: Gpupdate /force not forcing update

2010-02-18 Thread Free, Bob
> Group memberships can't. There is actually a way to update a computer's group memberships without a reboot. We discussed it on activdir last year. In Server 2008, Microsoft added some switches to the klist.exe utility that you could use to force a refresh of the server's tokens, and thus pick

RE: What is the latest version of RDP client for Win7?

2010-02-18 Thread Free, Bob
33 PM To: NT System Admin Issues Subject: RE: What is the latest version of RDP client for Win7? IP6 is disabled on the NIC(s). Something I read to do when introducing Ex2010 into an IPv4 environment. From: Free, Bob [mailto:r...@pge.com] Sent: Wednesday, February 17, 2010 4:20 PM To: NT

RE: What is the latest version of RDP client for Win7?

2010-02-18 Thread Free, Bob
, February 17, 2010 7:33 PM To: NT System Admin Issues Subject: RE: What is the latest version of RDP client for Win7? IP6 is disabled on the NIC(s). Something I read to do when introducing Ex2010 into an IPv4 environment. From: Free, Bob [mailto:r...@pge.com] Sent: Wednesday, February 17, 2010 4

RE: What is the latest version of RDP client for Win7?

2010-02-17 Thread Free, Bob
What do you mean by ip4 only? From: Sam Cayze [mailto:sam.ca...@rollouts.com] Sent: Tuesday, February 16, 2010 8:45 AM To: NT System Admin Issues Subject: RE: What is the latest version of RDP client for Win7? Having a terrible time getting an RDP session open to my first Srv08 server. Wo

RE: Re: OT: Google Username Assistance - huh?

2010-02-10 Thread Free, Bob
Thanks for pointing out the "official" explanation. I didn't notice that link when I tested my dotless address earlier today.. I get the explanation but I don't get why I couldn't get that address in the first place, I had the same experience as Lee when I first signed up for gmail 5 years ago

RE: OT: Google Username Assistance - huh?

2010-02-10 Thread Free, Bob
Sheesh, I just tried it and had the exact same experience here, and to think I could have been using the original address I wanted without the dot that they wouldn't give me all these years...nice to know. From: Lee Douglas [mailto:lee.doug...@gmail.com] Sent: Wednesday, February 10, 2010 1:3

RE: Reviewing my GPs, and found something I don't understand

2010-02-09 Thread Free, Bob
That seems like a bit of a stretch. Much of the focus on GPMC was around simplifying enterprise management, programmatically accessing GPOs and providing a scripting interface, why would you need all that on SBS? I spent a couple of evenings with the GPMC PM right around the time it launched a

RE: Reviewing my GPs, and found something I don't understand

2010-02-09 Thread Free, Bob
The basic elements of the Group Policy Editor are implemented in gpedit.dll, if you launch it via gpedit.msc you get LGP (Local Group Policy) which is only the most basic subset of the settings available as you noticed. I've seen it described as the top level of the namespace which is actually a

RE: Adding 2008 DC's... (revisited)

2010-02-09 Thread Free, Bob
? Regards, Michael B. Smith Consultant and Exchange MVP http://TheEssentialExchange.com -Original Message- From: Free, Bob [mailto:r...@pge.com] Sent: Tuesday, February 09, 2010 5:07 PM To: NT System Admin Issues Subject: RE: Adding 2008 DC's... (revisited) >I'm assuming

RE: Adding 2008 DC's... (revisited)

2010-02-09 Thread Free, Bob
a 2003>2008 domain raise this year and this is an > > awesome starting point! > > > > Thanks! > > > > Neal > > > > > __ > > _ > > > > Neal Palmer Senior Technical Support Officer

RE: WOL cost savings

2010-02-05 Thread Free, Bob
The energystar folks at the US EPA who brought us the power settings GPO assistance also have a savings calculator spreadsheet. I'm not sure of its merits but thought I'd pass it along. http://www.energystar.gov/ia/products/power_mgt/LowCarbonITSavingsCalc_v 26_with_5_0v2.xls From: Ch

RE: GPO preferences not reliable on XP?

2010-01-27 Thread Free, Bob
Not speaking for Brian but reading between the lines I think he may have meant enabling tracing for the specific CSE you are encountering difficulties with in: Computer Configuration\Polices\Administrative Templates\System\Group Policy\Logging and Tracing From: Tom Miller [mailto:tmil..

RE: ADM template

2010-01-26 Thread Free, Bob
There used to be one from a company named Syspro software. Not sure if it's been kept up. Another one that comes to mind is on tools4ever.com, not sure about its current status either. From: Ricardo Becerra [mailto:r...@mail.ucf.edu] Sent: Saturday, January 23, 2010 12:09 PM To: NT System Admi

RE: GPO Best Practices

2010-01-21 Thread Free, Bob
Actually that feature was updated in 2kSp4 so you could even do it on a W2K domain -Original Message- From: asbz...@gmail.com [mailto:asbz...@gmail.com] Sent: Wednesday, January 20, 2010 10:59 AM To: NT System Admin Issues Subject: Re: GPO Best Practices You can do it in 2003 as well

<    1   2   3   4   5   6   7   8   >