Press J to jump to the feed. Press question mark to learn the rest of the keyboard shortcuts
View
6
Posted by
Master of All Trades
2 days ago
Moderator of r/sysadminStickied post

Howdy, r/sysadmin!

It's that time of the week, Thickheaded Thursday! This is a safe (mostly) judgement-free environment for all of your questions and stories, no matter how silly you think they are. Anybody can answer questions! My name is AutoModerator and I've taken over responsibility for posting these weekly threads so you don't have to worry about anything except your comments!

6
65 comments
699

This just showed up yesterday completely unannounced. As a huge lego lover Thanks Dell!

https://imgur.com/a/iPbMn8J

699
206 comments
169

So my company wants to move our local file server to Sharepoint Online, i actually like the idea because it's a way to improve\automate our ancient internal procedures and delete some old data we don't need anymore.

My only concern is security.

We had many phishing attacks in the past and some users have been compromised, the attacker only had access to emails at the time and it wasn't a big deal but what if this happen in the future when sharepoint will be enabled and all our data will be online?

We actually thought about enabling the 2FA for everyone but most of our users don't have a mobile phone provided by the company and we can't ask them to install an authentication app on their personal devices.

How do you deal with that?

169
277 comments
50

We had a user who had a house fire that took out their other company device, this device had TPM and bitlocker setup without the knowledge of the current or previous IT teams.

Is there any chance for recovery if there is no 48 character recovery key?

I have already ran a few recovery tools to no avail, the following commands net get me here

manage-bde - status Bitlocker version: 2.0 Encryption method : XTS AES 128 Key Protectors: Numerical Password

With one of the forensics tools we get This Volume is NOT password protected

TPM

50
102 comments
31

I had a user's car broken into on Christmas eve and their corporate device stolen.

We use AzureAD authenticaion (M365 E3 with intune AzureAD P1) on the machine and bitlocker encryption. But the bios and USB access are wide open.

Just curious to see how others lock down their mobile devices and looking for anything I could seek to apply here within reason.

Any handy modern guides or KBs to that others have followed would be great too!

Oh, and happy new year!

31
57 comments
25

As stated in a the title I've discovered an issue in our SQL Server stretch-cluster with the File Share Witness (FSW) and I'm pretty sure at this point it is just a configuration setting but I've not been able to track down a proper explanation.

We have a 2-node Windows 2012 cluster running SQL Server 2016 Standard with Basic Availability Groups and a 3rd on-prem site FSW. The problem I'm encountering is periodically we've had issues with the 3rd site location (network & power) which we are in the process of improving but at least twice now we've had an outage that resulted in a split-brain due to the FSW being offline.

Today I was able to confirm this but I'm not sure if what I think is the fix is correct. I've done some digging and google-fu but cannot find any good explanation or articles on the option I'm looking at.

Our configuration of the FSW properties is to attempt to restart every 5-minutes for 5-attempts before failure. In this issue today we had 1-hour of network downtime while troubleshooting a replacement edge switch that was having problems. With the above settings the system attempted to switch the "Core Cluster Resources" over resulting in a split brain. My understanding of a FSW is that it should not affect the operating cluster and should only provide quorum. As we do not encounter this issue when we reboot the server for windows updates I'm pretty sure it is a duration of time down that is our issue.

I think the resolution is to un-check the box that states "If restart is unsuccessful, failover all resources in this clustered role". As this is the File Share Witness it does not have any other resources to failover. I've been trying to find a best practice for a FSW policies and timing but have come up short.

EDIT: I'd like to know what you all think about proposed solution and if you have any experience with the issue.

Thank you all and Happy New Year.

25
14 comments
19

Hello,

Don't suppose anyone has a high level backup policy doc template that they can share minus the any sensitive info. I'm sure this type of doc has been done many times. It's more the layout I'm after.

'Googled' a few and some Uni's publish theirs it seems.

Thanks

19
14 comments
27
Posted by
Sr. Sysadmin
13 hours ago

Just got a call from some rude woman demanding that we pay our spectrum bill or our service will be cut off. They could not provide any information other than the fact that we owed $240 and if it wasn't paid immediately, we would be cut off.

I looked online and our bill was up to date. Our accounting department asked to be transferred to billing, which they did and it was the legit billing department for Spectrum. They confirmed we are not past due.

Anyone else run into this scam as of late?

27
28 comments

Community Details

407k

Members

3.0k

Online

Oct 22, 2008

Cake Day

A reddit dedicated to the profession of Computer System Administration.

r/sysadmin Rules

1.
Account Age
2.
Professionalism
3.
Advertising
4.
Wrong Community
5.
Low Quality

Associated Subreddits

r/SysAdminBlogs

9.8k members

r/sysadminjobs

16.9k members

Filter By Flair

Moderators

u/mkosmo
Permanently Banned
u/AutoModerator
Master of All Trades
u/bandman614
Standalone SysAdmin
u/highlord_fox
Moderator | Computer Pope
u/VA_Network_Nerd
Moderator | Infrastructure Architect
u/Lord_NShYH
Systems Architect
u/cryptic_1
It is always DNS
u/bad0seed
Trusted VAR
u/sigmatic_minor
ɔǝsoɟuᴉ / uᴉɯpɐsʎS ǝᴉssn∀