* Posts by mr_splodge

10 publicly visible posts • joined 7 Sep 2012

Let's Encrypt updates certificate automation, adds splats

mr_splodge

Re: "...admins will have to edit a DNS record to prove..."

You do have to wonder about the security of the established domain validation techniques. How many DNS hosting providers have mandatory multi-factor authentication on their web portals? I'm yet to find one.

Azure security boss tells sysadmins to harden up and properly harden Windows Server

mr_splodge

Re: Rich

Really, explain this then https://docs.microsoft.com/en-us/windows-server/identity/securing-privileged-access/securing-privileged-access-reference-material#ESAE_BM

mr_splodge

Rich

This is rich coming from the company that puts 2x Xbox related services, downloaded maps broker, geolocation service to name a few, on by default in a standard server 2016 build, then publish articles saying you should disable them.

They really need to start practicing what they preach.

It would be great if the reality of just in time and just enough administration was workable in anything below megacorp enterprise. Not sure many of my customers will pay for another couple of server licenses or Azure VMs or whatever for a pair of administrative domain controllers, plus the cost of managing them, protecting them, backing them up etc.

Anyway, just about any MS article you read with instructions to perform some administrative task, such as migrating a server role, they tell you you need domain admin.

Microsoft previews Azure Container Instances – with per-second billing

mr_splodge

Re: Dumb question maybe?

That, and you're broken out of vendor lock-in. Move your containers between Azure, AWS, on-prem, whatever you want no hassels. Try doing that to an app service plan!

Acronis testing blockchain for backup

mr_splodge

The author of Q1_2016.xls should really move away from Excel 97-2003 format.

Chap runs Windows 95 on Apple Watch

mr_splodge

Emulators have overhead sure, but you'd think half a gigahertz of cpu and half a gig of ram would run it faster than that. It must be running on a couple of MHz of clock cycles at the most to be that slow. Windows 95 was supposed to be able to run on a 386!

Because the server room is certainly no place for pets

mr_splodge

"Although I'd still want long odds on someone being able to virtualise a Novell or SCO server in the first place :)"

Perfectly doable. I've virtualused s SCO openserver 5 application back in around 2007 before there was anything like vmware converter.

I just did a fresh install of the OS into a blank VM and moved the application, it's database and configuration files across. It wasn't too tricky at all really, took a couple of days of hacking around with it, even with no documentation or support.

The only problem was I could never get the OS licence CALs to work so we were stuck with the 5 you get by default. Thankfully that wasn't an issue because as a legacy system it wasn't used by many people in the business any more.

Win Server 2003 addict? Tick, tock: Your options are running out

mr_splodge

SID History

"The downside of migrating to a brand new Windows Domain is that any permissions set on things like file shares have to be redone"

Use ADMT to migrate user accounts and security groups with SID history and use robocopy to migrate files and folders, preserving permissions and attributes etc (DATSOU). Permissions are carried across properly this way. Use 2008 R2 functional level for your new domain and don't raise it until after you're done with ADMT. Easy.

Going strictly hands-off: Managing your data centre from afar

mr_splodge

I'm not sure I agree that an IP KVM is really a necessary thing. Both HP iLO and IBM's IMM have lights-out KVM access and you can get into the BIOS screen on both. In the case of HP iLO, even without the product being licensed; you only lose your console connection once the installed OS is up. IBM aren't so generous but you can still power cycle a machine with no license.

Photos of 'iPad mini' body stir rumor pot

mr_splodge

Re: Seems solid, good luck to them-but:

You need a bit of a edge on a 7" tab to be able to hold it comfortably and not accidentally touch the edge of the screen.