Set Edge browser as default - I am probably being dim
2023.06.08 18:54 ZAFJBSet Edge browser as default - I am probably being dim
Windows Server 2019 RD session hosts are stubbornly refusing to make Edge the default browser. I create the policy:
Open the Group Policy editor and go to the Computer Configuration\Administrative Templates\Windows Components\File Explorer.
Select Set a default associations configuration file.
Click policy setting, and then click Enabled.
Under Options:, type the location to your default associations configuration file.
Click OK to save the policy settings.
I use this file:
I link the GPO to the correct OU. On the RDSH:
RSOP shows it as being applied
But in Settings - Apps - Default Apps it stays as Internet Explorer
Something happened in the last few days, that unset Edge from opening links and shortcuts. In an attempt to fix it users are going to Settings - Apps - Default Apps and clicking Reset which then points Web browser to Internet Explorer. Changing that manually back to Edge fixes the problem, but we need an automated way to sort it out. I'm tired and at a loss. Help please.
2023.06.08 13:32 Silent-Revolution589Bitlocker Recovery Key in Deployment Summary
Cant wrap my head around this warning. I've Googled it a lot, and havent really found anyone else having the same issue except a 3 year old post in here with no solution. My Customsettings regarding BDE is : BDEKeyLocation=\\server\DeploymentShare$\RecoveryKeys (this folder is empty so it might not even be needed.) SkipBitLocker=YES Computers are landing in a OU that has a GPO policy linked to store keys in AD, and the keys are succesfully stored on the computer object after my deployment. So that part works. I run this powershell script as one of the last TS.
2023.06.07 21:23 mcole1226Group Policy: Delete file from all user desktops, including public?
We're pushing out a nifty little program to all desktops via GPO. In the same GPO, I'd like to delete the old batch file that this program is replacing. I have the file name but this file is located on users' desktops in some cases and on the public desktop in others. Is there a wildcard or variable I can use to delete this file from all user desktops as well as the public desktop? I am using the Files GP setting in Computer Configuration\Preferences\Windows Settings. Thanks in advance!
How's it going guys I'm kinda stumped here so any advice will be great. So we've recently purchased Qualys VMDR for our endpoints and my boss wants to get it deployed to all of our infrastructure. I followed the documentation Qualys have for GPO installation (using msi/mst on a shared location with read access) but after running the gpupdate on the test machines nothing happens. No installs. No errors. Nothing. Qualys support haven't been that helpful unfortunately so I'm thinking of just using a powershell script with the correct arguments (customerid, activationid weburi) and install it that way. Some worked just fine. Others received the windows smart screen message. I'm a little scatter brained tonight so any advice will be greatly appreciated.
Job Description: The Incumbent will lead a team of six to seven IT Professionals in partnership with the US Navy and other government agencies to provide operational and logistical support to base and flight line operations. He/she will manage facility networks to include network servers and peripherals, network architecture, data communications, TCPIP, MPLS, BGP, NTP, RADIUS, and data communications.
Location: Comalapa Air Base,El Salvador
Clearance: Secret
Experience: 5 years minimum LAN Server w/latest Windows Technologies
Daily operation & maintenance of C4I and AT/FP systems & equipment associated with the site's LAN System
Provide LAN system and application management services
Manage & maintain classified & unclassified network enclaves & assist the US Gov't with tasks associated with system operations
Ensure Information Assurance Vulnerability Management (IAVM) compliance
Serve as primary network engineering expert with demonstrated experience in Cisco Firepower / Firepower Management Center (FMC) and Cisco Identity Services Engine (ISE)
Serve as the IT Department Lead over a team of five IT professionals covering a suite of functions including Help Desk Support, Telecommunications Support, HBSS Administration, & Cybersecurity
Contribute to technical proposal development in support of contractual modifications and new business
Prepare reports that detail/summarize test/audit findings & determine what additional testing/reporting would help achieve strategic goals more effectively & efficiently
Use metrics to track performance & apply countermeasure diagnostic tools to close nonconformances
Review configuration management programs; collaborate with management to plan, develop, implement, inspect, & report noncompliance
Is the First Line of Defense (FLOD) to identify & remediate process gaps (regulatory, technical, or financial)
Define understandable key metrics to show the status of the IT Department.
Initiate & drive quality & process improvements throughout the site
Oversee the Department's documentation library; ensure SOPs, Operating Instructions, Desktop Procedures, Work Documents, OEM (Original Equipment Manufacturer) Manuals, technical, & regulatory requirements are up-to-date
In depth knowledge of network architectures, topologies and IP protocols
Knowledge of Microsoft Windows Server 2012R2 through Server 2019, Microsoft Endpoint Configuration Manager (MECM), Red Hat Enterprise Linux (RHEL), VMware ESXi, virtual and physical storage, Storage Area Network (SAN), VRTX, Solarwinds Orion, Solarwids Patch Manager, Microsoft NPS, DFS, Events logs, Powershell Scripting, SNMP, DHCP, DNS/BIND, ADDS, GPO, Cisco Firepower Firewalls and IDS/IPS, Cisco Secure Firewall Management Center (FMC), Cisco Identity Services Engine (ISE), Cisco routers/switches, McAfee / Trellix Endpoint Security Solution (ESS) Suite, Veritas Backup Exec, Dell PowerVault Tapes, Security Information and Event Management (SIEM) Splunk administration, KIWI syslog administration, tumbleweed, MS Office 2016 and newer products, MS Visio 2016, Adobe Product Suite, Assured Compliance Assessment Solution (ACAS), Active client software, Windows Security Update Server (WSUS), AtHoc (Crisis Communication Notification) software, and all security software approved by the DoD
Be able to STIG/apply SRGs to all aforementioned technologies.
2023.06.06 12:49 LesilhouetteGPO settings available in CSP?
We are in the process of applying the Windows 11 CIS L2 benchmark, and are currently pushing that as GPO because it was easier to implement and test (as they provide the GPO files for all their benchmarks), but are now wanting to import that into Intune. Via the Group Policy analytics we've imported our GPO xml, and created a settings catalog from the settings that are natively available. But we still have some 100-ish settings that (according to the GP analytics) that are not natively compatible. So my question is: are the settings shown/documented on Microsoft's Policy CSP page the only ones that are available, or are similar settings that might work but are not documented? In example: we want to configure the setting 'Configure DNS over HTTPS (DoH) name resolution/Configure DoH options: allow DOH' (which in GPO is located under computer configuration\administrative templates\Network\DNS Client). The area (DNS client) is documented (ADMX_DnsClient Policy CSP - Windows Client Management Microsoft Learn) but are that all settings (for this area) that are possible, or are these just the ones that are documented?
This is v86.0.0 (v84.0.0, v83.0.0, v82.0.0, v81.0.0, etc...) of our PDQ installers and includes all installers from the previous package with old versions removed. PDQ is not required. All packages:
...install silently and don't place desktop shortcuts
...disable all auto-update and stat-collection/telemetry "features" possible
...work with the free or paid version of PDQ Deploy but do not require it - each package can run standalone (e.g. from a thumb drive) or pushed with SCCM/GPO/etc.
Download
Primary: Download the torrent. Secondary: Download the self-extracting archive from one of the repos:
Make sure the settings for your Sync folder look like this(or this if you're on v1.3.x). Specifically you need to enable DHT. Quaternary:(source code) The Github page contains all scripts and wrapper files used in the pack. Check it out if you want to see the code without downloading the full binary pack, or just steal them for your own use. Note that downloading from Github directly won't work - you need either this provided pack or go manually fetch all the binaries yourself in order to just plug them in and start working.
Pack list
Installers: (Updates in bold. All installers are 64-bit unless otherwise marked)
7-Zip v22.01
7-Zip v22.01 (x86)
Adobe Acrobat Reader DC v23.001.20174
Apple iTunes v12.5.1.21 ! -- REMOVED
CDBurnerXP v4.5.8.7128
FileZilla Client v3.64.0
Gimp v2.10.32 (x86)
Google Chrome Enterprise v114.0.5735.91
Google Chrome Enterprise v114.0.5735.91 (x86)
Google Earth Pro v7.3.4 ! -- REMOVED
Java Development Kit 8 Update 341
Java Development Kit 8 Update 341 (x86)
Java Development Kit 11.0.16
Java Runtime 10.0.2
KTS KypM Telnet/SSH Server v1.19c (x86)
LibreOffice v7.5.1
Microsoft .NET Framework v3.5.1 SP1 (x86)
Microsoft Silverlight v5.1.50918.0
Mozilla Firefox v113.0.2
Mozilla Firefox v113.0.2 (x86)
Mozilla Firefox ESR v102.11.0
Mozilla Firefox ESR v102.11.0 (x86)
Mozilla Thunderbird v102.11.2 (x86)(customized; read notes)
USB Device Cleanup. Uninstalls non-present USB hubs, USB storage devices and their storage volumes, Disks, CD-ROM's, Floppies, WPD devices and deletes their registry items. Devices will re-initialize at next connection
Instructions
Import all .XML files from the \job files directory into PDQ deploy (it should look roughly like this after you've imported them).
Copy all files from the \repository directory to wherever your repository is.
All jobs reference PDQ's $(Repository) variable, so make sure it's set in preferences.
Package Notes
Read the notes in the PDQ interface for each package, they explain what that installer does. Basically, most packages use a .bat file to accomplish multi-step installs with the free version of PDQ. You can edit the batch files to see what they do; most just delete "All Users" desktop shortcuts and things like that. changelog-v##-updated-.txt has version and release history.
Thunderbird:
Thunderbird is configured to use a global config file stored on a network share. This allows for settings changes en masse. By default it's set to check for config updates every 120 minutes.
You can change the config location, update frequency, OR disable this behavior entirely by editing thunderbird-custom-settings.js.
A copy of the config file is in the Thunderbird directory and is called thunderbird-global-settings.js
If you don't want any customizations, just edit Thunderbird's .bat file and comment out or delete all the lines mentioning the custom config files.
Microsoft Offline Updates - built using the excellent WSUS Offline tool. Please donate to them if you can, their team does excellent work.
Integrity
In the folder \integrity verification the file checksums.txt is signed with my PGP key (0x07d1490f82a211a2, pubkey included). You can use this to verify package integrity. If you find a bug or glitch, PM me or post it here. Advice and comments are welcome and appreciated.
Donations
These packs will always be free and open-source. If you feel like giving away your hard-earned cash to strangers on the internet you may do so here: Patreon Bitcoin: 1Bfxpo1WqTGwRXZKrwYZV2zvJ4ggyj9GE1 Monero: 46ZUK4VDLLz3zapDw62UaS71ZfFBjH9uwhc8FeyocPhUHHsuxj5zfvpZpZcZFHWpxoXD99MVt6PnR9QfftXDV8s6CFAnPSo "Donotwithholdgoodfromthosetowhomitisdue,whenitisinyourpowertoact."
2023.06.05 14:54 bigrichardchungusEdge printing blank pages when using the system print dialog
Hi folks, Bit of background here. My company uses Epson TM-T88V slip printers for printing receipts. We have been having challenges with the standard Edge printing dialog. With the Edge printing dialog, print jobs will hang for anywhere from 30 seconds to 5 minutes, and will then print. This occurs for both standard print jobs and slips. We determined that this is due to the fact that these are non-standard size printouts and Edge seems to have a challenge with these (we think it might be a Chromium challenge honestly, as it seems to happen with Chrome as well). Additionally, the quality of the text on the slips is terrible when printing with the Edge dialog. The Windows print dialog does not have these challenges, so we're enabling the setting in Edge to switch the print dialog to the Windows System dialog with a GPO (User Configuration/Administrative Templates/Microsoft Edge/Printing/Print using system print dialog). However, with this setting configured, sometimes the slips just print out blank. This doesn't happen all the time, and reprinting the receipt works fine, but it happens frequently enough that I have concerns about pushing this change out to users. The only variable I'm not 100% sure about is the Epson printer driver, as I'm not honestly sure what version we're pushing out to the workstations that use these printers, and I'll be testing that in the very near future. Has anybody experienced this challenge before after changing the print options in Edge? Is there even a way to determine what happens when the slip prints blank? Any information would be greatly appreciated. Thank you kindly! Edit: added the GPO setting location
2023.06.01 22:25 Sensitive_Advance_42ADMX Exploit Guard ASR Rules
Policy CSP - ADMX_MicrosoftDefenderAntivirus Co-managed. No GPO applied. No policy deployed in config manager. Settings are stricter than our policy using the templates within the ASR blade which are user assigned. I’m looking to change a rule from block to audit but cannot locate the source of this ADMX policy and eventually get rid of it completely. Both policies show up on the MDMDiagReport. I’ve file grepped the intune backup config for ‘ADMX’ and the registry keys as well as a couple other terms which would point to the xml structure and nothing is to be found. I can only edit the registry once a device configuration ASR policy is assigned to a device and which knocked out the ASR rules policy assigned to users previously mentioned. An accidental discovery which seems to make sense to me and apparent from only the ADMX policy now showing in the MDMDiagReport. But of course when the device syncs again we’re back to Block. No matter the the device hybrid or autopilot this policy applies.
How am I to locate the source of this policy?
If I can’t find a trace of the ADMX policy in intune I can’t amend the assignments or settings or to delete it. I also won’t know the namespace to recreate the policy if ghosts exist in Intune. Will I?
Am I simply looking at how the office defaults are applying as I’m specifically targeting the macro rule? I wouldn’t have tho get so. If so, how is it overcome? Deploy the ASR rules to devices from the templates in Intune? I don’t know if that would remove the existing stricter settings or if that is even appropriate.
How can I stop the policy from hitting clients if I can’t find it’s source?
2023.05.31 11:26 Klipspringer112Giving a manicure and pedicure to our main AD branch location, need advice on best practices for OU structuring and layout
We haven't gone too in-depth with proper foresight into getting our Active Directory into tip-top shape. Now we need to really revisit how we have structured our AD OUs in a much better way. From a top-level OU structure, we are planning to have the DC site location with the structure as - Site-Location: OU Level 1- Building/Office OU Level 2 --Department OU Level 3 ---Users/Computers We have some challenges here and not sure if the above structure will work:
Some buildings/offices may have a mixture of different departments that exist in other buildings/offices in the same site.
Some users may be in multiple departments, so should we create all department containers in all buildings/offices as a pre-step to avoid extra work in the future?
Some "special category" computer group policies we have applied to specific department machines which should not apply to all departments, would it be wise to create OU Level 4 for these machines? Specific policies are for example: Exceptions to Windows Screen lock-out, Allowing phones to be tethered to CPUs, Allowing USB access. This would create the GPO mapping side to be a little more tedious for us. So trying to prevent as much work as possible here.
Any suggestions on proper structuring from AD Veterans would help. Thanks!
2023.05.28 02:00 blablabla916Exchange 2016 DAG member Recovery failing to install Mailbox Role: Transport Service
So I have a two member DAG on Windows 2012 R2 and Exchange 2016 CU 19. I'm at the step in the recovery process where I'm installing Exchange on the restored machine and all goes smooth until step 7 Mailbox Role:Transport Service install and I get the following message:
[05/27/2023 22:48:41.0583] [2] Active Directory session settings for 'Set-LocalPermissions' are: View Entire Forest: 'True', Configuration Domain Controller: XXX.XXX.XXX', Preferred Global Catalog: 'XX.XXX.XXX.', Preferred Domain Controllers: '{ XX.XXX.XXX.}' [05/27/2023 22:48:41.0583] [2] User specified parameters: [05/27/2023 22:48:41.0584] [2] Beginning processing Set-LocalPermissions [05/27/2023 22:48:41.0612] [2] [ERROR] The process does not possess the 'SeSecurityPrivilege' privilege which is required for this operation. [05/27/2023 22:48:41.0625] [2] [ERROR] The process does not possess the 'SeSecurityPrivilege' privilege which is required for this operation. [05/27/2023 22:48:41.0632] [2] Ending processing Set-LocalPermissions [05/27/2023 22:48:41.0639] [1] The following 1 error(s) occurred during task execution: [05/27/2023 22:48:41.0641] [1] 0. ErrorRecord: The process does not possess the 'SeSecurityPrivilege' privilege which is required for this operation. [05/27/2023 22:48:41.0641] [1] 0. ErrorRecord: System.Security.AccessControl.PrivilegeNotHeldException: The process does not possess the 'SeSecurityPrivilege' privilege which is required for this operation. at Microsoft.Exchange.Configuration.Tasks.Task.ThrowError(Exception exception, ErrorCategory errorCategory, Object target, String helpUrl) at Microsoft.Exchange.Configuration.Tasks.Task.WriteError(Exception exception, ErrorCategory category, Object target) at Microsoft.Exchange.Management.Deployment.SetLocalPermissions.InternalProcessRecord() at Microsoft.Exchange.Configuration.Tasks.Task.b__91_1() at Microsoft.Exchange.Configuration.Tasks.Task.InvokeRetryableFunc(String funcName, Action func, Boolean terminatePipelineIfFailed) [05/27/2023 22:48:41.0643] [1] [ERROR] The following error was generated when "$error.Clear(); Set-LocalPermissions " was run: "System.Security.AccessControl.PrivilegeNotHeldException: The process does not possess the 'SeSecurityPrivilege' privilege which is required for this operation. at Microsoft.Exchange.Configuration.Tasks.Task.ThrowError(Exception exception, ErrorCategory errorCategory, Object target, String helpUrl) at Microsoft.Exchange.Configuration.Tasks.Task.WriteError(Exception exception, ErrorCategory category, Object target) at Microsoft.Exchange.Management.Deployment.SetLocalPermissions.InternalProcessRecord() at Microsoft.Exchange.Configuration.Tasks.Task.b__91_1() at Microsoft.Exchange.Configuration.Tasks.Task.InvokeRetryableFunc(String funcName, Action func, Boolean terminatePipelineIfFailed)". [05/27/2023 22:48:41.0643] [1] [ERROR] The process does not possess the 'SeSecurityPrivilege' privilege which is required for this operation. [05/27/2023 22:48:41.0644] [1] [ERROR-REFERENCE] Id=AllRolesCommonFirst_RunOnce___00573a17b6e34c26842a6646830d57fa Component=EXCHANGE14:\Current\Release\Shared\Datacenter\Setup [05/27/2023 22:48:41.0644] [1] Setup is stopping now because of one or more critical errors. [05/27/2023 22:48:41.0644] [1] Finished executing component tasks. [05/27/2023 22:48:41.0653] [1] Ending processing DisasterRecovery-BridgeheadRole [05/27/2023 22:48:41.0656] [0] CurrentResult console.ProcessRunInternal:198: 1 [05/27/2023 22:48:41.0658] [0] CurrentResult launcherbase.maincore:90: 1 [05/27/2023 22:48:41.0658] [0] CurrentResult console.startmain:52: 1 [05/27/2023 22:48:41.0658] [0] CurrentResult SetupLauncherHelper.loadassembly:452: 1 [05/27/2023 22:48:41.0658] [0] The Exchange Server setup operation didn't complete. More details can be found in ExchangeSetup.log located in the :\ExchangeSetupLogs folder. [05/27/2023 22:48:41.0659] [0] CurrentResult main.run:235: 1 [05/27/2023 22:48:41.0659] [0] CurrentResult setupbase.maincore:396: 1 [05/27/2023 22:48:41.0659] [0] End of Setup [05/27/2023 22:48:41.0659] [0] **********************************************
In searching I've seen some say this is caused by the install user's inability to access logs and some GPO could be involved. The policy being applied to the Exchange Servers has Exchange Enterprise Servers and Exchange Servers . Rolls right smoothly along until Mailbox Role: Transport Service and then fails. I've checked permissions, rebooted server and ran setup a few more times by removing the WaterMark and Action entries in the registry and it just fails at the same spot. Not sure what I'm missing but this certainly stalled out my progress here. Thanks in advance for any assistance.
Updated: June 5th 11:30pm Information & Resources: GPA Power Update June 5 // Update June 8 GWA Water Update May 31 - Boil notice & water tank locations. // Update June 2 - Water restoration map. GTA Phone Service Update no caps on data plans or calls, as of May 29th 10am Typhoon Debris Disposal Information Green Waste Disposal Information Habibi Catering: Delivering free meals to those displaced from their homes. They are also looking for volunteers to help deliver & cook! Instagram @HabibiCateringGuam ———————————— YIGO - LAUNDROMAT Manhita - more info - Wellness & Water - Payless - Joanns bakery - Cafe Pandero - Uptown Pub & Grill - cash/card - KFC - McDonald’s - cash/card, 7am-10pm - PS Mart - is giving FREE water to those who need it at the back of their store, just bring your containers - Imma Market - One Plus One Mart - Hello Mart - JCK - Prime Mart - Island Pantry - Hills Mart DEDEDO - GAS 76 - cash/card, 11am-8pm - GAS Shell (Micro Mall intersection) - cash/card, 24 hours - ATM $$$ Micronesia Mall Coast 360 - ⚡️Guam Serenity Spa ⚡️ clients can charge their devices during their massage sessions + free cold refreshments - ⚡️ Micronesia Mall Denny’s ⚡️cash only, outlets for charging - Micronesia Mall Coldstone - Micronesia Mall Payless - Dededo Payless - American Bakery - cash only - ASAP Bakery - cash only - Ajisen Ramen - take out orders only, phone line is down so order in person, cash/card - Kings - sit down - Pieology - cash only, dine in/takeout, 11am-7pm - KFC - cash/card, dine in or drive thru - Wendy’s - drive thru only, 6am-8pm - NCS market - Fine Store - Onedera - cash/card, has ice limit 2 per customer - Prime Mart @ Wusstig Palm Market - White Market - UR Market - John B’s Mart TUMON/TAMUNING - GAS Shell (GPO) - cash/card, 24 hours - GAS Shell (Tumon) - cash/card, 24 hours - GAS 76 (Airport intersection) 2pm-8pm first responders only - ATM $$$ Navy Federal (on Marine Corps) working as of May 28th - ATM $$$ Bank Pacific - working as of May 28th - ⚡️Mactech⚡️free phone charging - ⚡️ Smart town⚡️free 30mins of charging - ⚡️Hilton & Hyatt lobbies ⚡️ have AC & power outlets - ⚡️ Mi Sazon’s ⚡️ 11am-10pm, cash & Paypal, has outlets they are allowing customers to use (to your left as you enter) - ⚡️ Denny’s ⚡️outlets for charging in every booth - Alp’s Water & Ice - Oka Payless - water refill station working - Home Depot - Kmart - Ban Thai - Lee Garden - cash only, sit down - Jack in the Box - Snow Monster - CPK - dine in/take out, 11:30am-5pm - IHOP (Tumon) - dine in/takeout, 11am-9pm - Kracked Egg - take out only, 7am-2pm- - Ban Thai - closes at 7pm - TGI Fridays - sit down, accepting card, 10am-10pm - Proa - Longhorn - takeout, cash only, 11am-8pm - Outback - to go orders only, limited menu till 8:30pm - Lonestar - 5pm-10pm - Denny’s - sit down, cash/card - Maxi Mart - card/cash, out of ice until next week - Joy market - Seoul Mart - Lucky Spring BARRIGADA / MONGMONG-TOTO-MAITE - LAUNDROMAT! 24 Wash & Dry - BOTH washers & dryers are functional - LAUNDROMAT! SK Laundromat - dryers only! - GAS 76 - cash/card, 11am-8pm - New Toto Market - making ice daily - San Jose Supermarket - cash only - Os 7 Store - Ebenezer Mart - cash only, no ice - Wendy’s - drive thru only, 6am-8pm - Happy Mart - Su Mart - Kanada Mart MANGILAO - KFC - cash only - Wendy’s - Pagat Market Payless: has ice - Uncle Cho - New Zuni Mart - New Campus Mart - cash only - Dairy Mart - K2 Market - GCC Mart - Eagles Mart HARMON - GAS Shell - cash/card, 24 hours - Eternal Water (@ Bank of Guam building) - for water - WSTCO (feed store/pet supplies) - Kings - cash only - SJ Market - Maya’s Restaurant - open until 5pm - McDonald’s - cash only, 7am-10pm CHALAN PAGO-ORDOT - LAUNDROMAT Krispy Klene - dryers only - GAS Shell - diesel only, cash/card, 8am-8pm - Shine Market: cash/card, water machine works HAGATNA / AGANA - Dr. Kabob @ Agana Shopping Center - cash/card - Capricosa @ Agana Shopping Center - to-go only - Mosa’s - 11pm-9pm, dine in/takeout, cash/card - McDonald’s - cash only, 7am-10pm - Jamaican Grill- dine in/takeout, 10am-6pm - CPK - take out only, 11:30am-9pm - Wendy’s - drive thru only, 6am-8pm YPAO - GAS 76 - cash/card, 11am-8pm - New Ypao Mart TALOFOFO - Jeff’s Pirates Cove - cash/card - Paulino Store AGAT - GAS 76 - cash/card, 11am-8pm - Bay Dollar - Island Equipment - selling medical oxygen! - Payless SINJANA - 76 Gas Station - cash/card, 11am-8pm - Payless - cash only OTHER - PITI Day Buy Day - cash only - MALESSO Tomoge Beach Mart - TIYAN Shell gas - cash/card, 8am-8pm
2023.05.27 02:59 move_character_longStudio One 3 Pro and Garritan Personal Orchestra v3
Come with me on a journey into the past... I'm trying to use my old version (v3) of GPO with Studio One 3 (upgraded to Pro so I can use VST plug-ins) on Windows 8. My old Garritan disc came with NI Kontakt Player 2. I added the folder name for Native Instruments to the VST Plug-ins Locations list but it's not being found on start-up. I did find a comment on the Presonus forums that "the file path must match the bit rate of StudioOne that is installed". Studio One Pro is in /Program Files while Native Instruments is in Program Files (x86) (32-bit program). So I then downloaded and installed Kontakt 6 Player (64-bit), but that is asking me to activate GPO. Clicking on the link to open Native Access, it doesn't show GPO as an option to activate. And when I add the new location of Native Instruments (in Program Files), Studio One still doesn't show NI/Kontakt or Garritan as available instruments. I realize this is a long shot, but has anyone else got these old versions of Studio One and Garritan to worki together? Thanks!
2023.05.25 20:28 cosine83[FOR HIRE] Windows Systems Engineer/Specialist
I was laid off back in January as part of the layoffs sweeping tech and other sectors. I've been working in IT for 15 years now, 6 as service desk and 9 years in admin/engineer roles that wore many hats. From imaging strategies to automated reporting via PowerShell, I've got a pretty wide skillset but mostly Microsoft-based. My Linux skillset is fairly limited to getting basic info and patching so it's not worth mentioning beyond that, really. The job hunt has been way too long and demoralizing. Areas of expertise:
PowerShell automation, reporting, configuration, and tool building.
Including using GitHub, Atlassian products, and VS Code for version control/tracking.
Server management/deployment - VMWare and Hyper-V on current versions, Windows Server up to 2019.
Microsoft 365 hybrid setup and Exchange on-prem migration.
Microsoft PKI and multi-domain/site setup.
AD, DHCP, DNS, GPO, etc. all the main Microsoft stuff, I've built up numerous times.
Security-minded in design and building solutions.
Relocation? Currently located in Reno, NV. Primarily looking for remote or hybrid local(-ish) work. Would be willing to relocate to PNW, SoCal, NorCal/Bay Area. However, I prefer expenses paid up-front as a sign on bonus, not reimbursed because moving is very expensive. Salary range: 90K-120K, negotiable depending on benefits and work/life balance. On-call: willing to do rotations but not sole 24/7 on-call. If responding with a job, please provide the salary range, remote or not, and basic benefits. DM for further details (LinkedIn, email, etc.). I prefer full time over contract or contract-to-hire so those will get my consideration over others.
2023.05.24 19:46 soulreaper11207Dell Bios Password set in mass via script
So i need some new eyes on this. Its a script that runs through an OU, sets a pssession, loads a module into memory, adds network creds, tries to set the bios password, and then deletes the network creds and the pssession. But I cant get it past importing the module. Says access denied. I'm running the script as Domain admin. # Import the Active Directory module Import-Module ActiveDirectory # Set the OU path where the machines are located $ouPath = Read-Host "Provide OU Path (eg OU=Computers,DC=domain,DC=com)" # Set the password for DellBIOSProvider $password = "Password" # Specify the file path for the DellBIOSProvider module $moduleFilePath = "\\server\networkshare\DellBIOSProvider\2.7.0\DellBiosProvider.PSM1" # Specify the file path for the output $outputFilePath = Read-Host "Provide path to output file (eg C:\Path\to\output.csv)" # Specify the credentials for the PSSession #$credentials = Get-Credential # Get all machines in the provided OU $computers = Get-ADComputer -Filter * -SearchBase $ouPath # Initialize an empty array to store the output data $outputData = @() # Loop through each machine and perform actions foreach ($computer in $computers) { $computerName = $computer.Name # Ping the computer to check if it is active $pingResult = Test-Connection -ComputerName $computerName -Count 1 -Quiet if ($pingResult) { Write-Host "Processing $computerName..." # Establish a PSSession to the remote computer with the specified credentials $session = New-PSSession -ComputerName $computerName # Import DellBIOSProvider module from file path try { Invoke-Command -Session $session -ScriptBlock { param($moduleFilePath) net use "\\10.4.26.3\GPO Files" /user:admin notpassword Import-Module -Name $moduleFilePath -Force -ErrorAction Stop } -ArgumentList $moduleFilePath } catch { $outputData += [PSCustomObject]@{ ComputerName = $computerName Status = "Module import failed: $($_.Exception.Message)" net use * /delete /y } } if (-not $outputData) { # Set the BIOS password try { Invoke-Command -Session $session -ScriptBlock { param($password) set-Item -Path DellSmbios:\Security\AdminPassword $password net use * /delete /y } -ArgumentList $password } catch { $outputData += [PSCustomObject]@{ ComputerName = $computerName Status = "Password setting failed: $($_.Exception.Message)" net use * /delete /y } } } # Close the PSSession Remove-PSSession -Session $session } } # Export the output data to a CSV file $outputData Export-Csv -Path $outputFilePath -NoTypeInformation Write-Output "DellBIOSProvider installation and password setup completed for all active machines. Output written to: $outputFilePath"
2023.05.22 23:10 weischrisBulk add 365 accounts to users outlook profiles
Customer has a 2013 exchange server and using new domain with 365. I am trying to find a method in which I can add the 365 account (not tied to current AD) through a GPO or a script. I have all the accounts and temp passwords in a csv. I would prefer to not go to every users desktop at multiple locations. Any help appreciated. thanks
Hello all I created this Policy KILL . By default it’s applied to each OU as DBA, NotDBA. I want to disable kill GPO on only DBA . Is it possible ? To keep it enable on NOTDBA and disable on DBA.
2023.05.18 08:05 maxcoder88GPO tattooing - added network location for clients via GPP (Item-Level Targeting)
Hi, I have added network location for clients via Group Policy preferences. My workflow is: - I added the test user to the relevant security group. (GPO_PUBLIC_GROUPS) then run gpupdate /force and reboot. it works. I can see network location called Public. - After I removed my test user from relevant security group. (GPO_PUBLIC_GROUPS) then run gpupdate /force and reboot. But it stays network location folder even after removing the GPO.
User Configuration GPO Settings: Folder (Path: %AppData%\\Microsoft\\Windows\\Network Shortcuts\\Public) Item-level targeting: Security Group Security Group : CONTOSO\\GPO\_PUBLIC\_GROUPS Ini File (File Path: %APPDATA%\\Microsoft\\Windows\\Network Shortcuts\\Public\\desktop.ini, Section Name: .ShellClassInfo, Property Name: CLSID2) Item-level targeting: Security Group Security Group : CONTOSO\\GPO\_PUBLIC\_GROUPS Ini File (File Path: %APPDATA%\\Microsoft\\Windows\\Network Shortcuts\\Public\\desktop.ini, Section Name: .ShellClassInfo, Property Name: Flags) Item-level targeting: Security Group Security Group : CONTOSO\\GPO\_PUBLIC\_GROUPS Shortcut (Path: %NetPlacesDir%\\Public\\target) Item-level targeting: Security Group Security Group : CONTOSO\\GPO\_PUBLIC\_GROUPS
Any help will be appreciated... Many thanks in advance!
2023.05.17 09:38 TCArghFTTP NTU install and conduit requirements.
Just had the fibre lead-in run to the new box outside. 2nd appointment is in about 2 weeks for the internal run and NTU install. Based on other threads here, I’ll be running P20 conduit with draw rope to NBN spec through the roof space to the garage as that's the desired location of the NTU (opposite side of the house to where the lead-in is). Already have GPO and data in place. Two items I’m not 100% certain about - would appreciate some feedback: NTU placement will be in a sealed garage: It’s bare brick. It's not overly clear if the NTU requires a smooth surface for mounting. I can always put up a sheet of Formply to the size of the equipment template if needed I guess. Conduit to external utility box: The external box is on a double brick wall. NBN specs state P20 conduit with a 100mm radius bend within the wall cavity to the utility box. I can certainly get P20 conduit down the cavity, but there is no chance of putting a 100mm radius bend in. I can't run external conduit to roof space (no eaves, just the gutter fascia directly above). Any thoughts or advice here? Would it be acceptable to leave the conduit terminating in the roof space just above the utility box, essentially leaving the NBN tech to just lift a tile directly above to see it? Or should I run the conduit down the cavity, drill a 20mm hole below the utility box (45 deg upwards) and run draw-rope through?
2023.05.16 21:19 BootError15Should I look for a better job?
Hi, Everyone. Little about me, I have a B.S. in Computer information Systems, been with my current company for 16 years for a Global manufacturing plant. Started as a intern out of college, going from Helpdesk to Virtualization System Admin, to my current title of SAP Developer where I code custom reports and programs for our SAP ERP system. Over those 16 years I've basically have always warn many hats and have picked up the projects as they rolled in. Including everything from Black Berry Servers to implementing VMWare into the environment or even going from analog digital phone system to IP based phone systems. Short list of tasks skills include. Virtualization of servers, Managing/configuring multiple ERP and CRM services including SAP, SugarCRM and Salesforce, Developing Applications for SAP ERP, C#, and ASP.net, Digital Signage, Phone Systems, Networking, Active Directory/Exchange/GPO/Etc, Converting Finance/HR to paperless systems, Azure/MDM/Intune systems, Black Berry(not that it's relevant now), HTML/CSS/PHP/MYSQL/Shell Scripting, Label design with various programs using ERP data. Now I've been with the company a long time, we've been through rapid growth, sold off, bought, then grown multiple times since then to about 4 times the locations we support with no sign that it will slow down. Now over the 16 years, I've gotten small raises and salary changes based on my latest job title but I've always felt that i've been underpaid. I've worked weekends, late nights, and even a 30 hour shift once to do maintenance/construction on our server room or swap out switches in our main facility. I've traveled to remote facilities to do upgrades and pretty much picked up 99% of new tech/projects because of the small IT dept and that my other team members are from the older generation and are just set on their ways. While getting moved to the SAP Development role my latest pay was mid 80's. Although it was a nice bump, I still pushed for more and got denied. Because I always question my skills , I just accepted as it was. That being said, my direct boss has been with the company as long as I have, we started around the same time, are around the same age and have the same frustrations with the company. Company is too large and doesn't hire enough or the right people handle items. The hierarchy is all over the place, too many people who do very little in some depts and not enough people in depts that need help. No project managers of any sorts and with the growth of the company it just leaves messes at every new plant we open. So that being said, I'm a tech guy, always have been. Love tech, love learning about new tech. I have a vast of other abilities of skills outside of what I do at work. I've dabbled in Webhosting, Dedicated server hosting, game servers, etc. I've been told I should be looking for a new job but I'm always nervous about starting new after being somewhere for 16 years. I'm not very confident that I'm any better than the next guy. To add to the mess, I have a child due within the month, so I am most likely going to take some time off for that. So I don't know if any company would even look at someone with the potential of them being out for a few weeks. What should I do? Should I look at other opportunities that pay better with my experience? Am I overthinking it and stay with my current employer?