Wednesday, May 27, 2009

Windows 7 RC thoughts

As an IT professional, one of the joys is playing with new toys. But, it is also one of the biggest time wasters and can be frustrating at times. I'm writing this blog as this same Dell OptiPlex 755 w/ 4gb of RAM is finishing setting up Windows 7 RC in Microsoft's Virtual PC 2007 SP1.

I decided to use VPC instead of VMware just to keep it in the MS family. The complete W7RC installation process from the Capture CD from ISO took approximately 1 hour (slightly less, and keep in mind that I'm doing normal work, even streaming Pandora now while the VM is doing its final reboot).

Before I dig into it, I'm making a backup copy of the VM folder so I don't have to go through the install again if I screw something up.

Also, here are a few of my hopes for Windows 7:
- Secure - I'd like to see a bulletproof OS
- Fast
- TimeMachine like backup program
- Built in LogMeIn type remote access
- Better collaboration tools
- Less update intervention

And now, I've booted. I'm in. My first real look at Windows 7 RC (Ultimate). At first glance, I'm thinking "Where is everything?" I'm sure that I can find it. But what about my mom or that salesperson that is admitedly "not a computer person". Other than that, so far so good. And 8 updates available from Microsoft.

Some thoughts:
- Appearance: Looks fine. I don't really see any major changes from Vista other than what I'd consider cosmetic. The Show Desktop in Windows 7 is in the bottom right corner (can't live without that).
- Speed: For now, I'd say the speed seems fine. I'm running with 2gb of RAM assigned to the VM.
- Wishes: Wow, it looks as though there is a System Image tool under the Backup & Restore. I'llbe investigating this.
- Issues: A VM issue with DVD Maker (not a real issue).

Thursday, April 30, 2009

Green IT initiative for San Diego

Green IT initiative for San Diego
Save money and be responsible - Participate in DELTYME's Green IT initiative.

Every business is looking to save money. And, we could all do a better job of saving energy to help the environment. Below, are a few tips to get your business started with its own Green IT initiative.
Please contact us today to learn more. 858-483-0497

Review your estimated IT power consumption

By knowing what your power consumption is for your Information Technology, you have a baseline to make decisions. You can use the following the Power Calculator link to run a quick savings estimate.

Consider implementing PC power policies

Many offices leave their PCs on 24/7 in order to allow user to work remotely & PCs to update and run automated tasks. You may want to consider enforcing stricter PC power policies which can be implemented company wide via network policy.

Dispose of equipment properly

If you have old and outdated computer/electronics equipment, be sure to dispose of it properly. Here are a few equipment disposal resources for you to use.

Use the FREE EcoFont

Tired of replacing expensive toner. Try using the FREE EcoFont
The makers of the EcoFont claim it will help you use 20% less toner.

Quick Links
Green Computing
5 Steps to Green IT
HP Printing Green

Monday, April 6, 2009

Why Microsoft is failing

I seem to explain the problems with Windows PCs all too often to laypeople.

This may be obvious to IT industry folks, but the reason that Microsoft is failing is because of the high number of security incidents on Windows PCs that require the user to reload their system resulting in a higher cost of ownership, lost work time, frustration, lack of trust, possible data loss, potential security risks, and more.

Ultimately, the Windows PCs as we know them have not evolved fast enough to keep up with what is required... reliability for even the most novice of user in the simplest environment (ie. little of no network/IT investment). Most computer users do not have the expertise nor means to build a layered security model to protect their vulnerable Windows PC.

Of course, a lot of factors contribute to this failure, yet, Microsoft has not taken the steps required to plug the holes. Hence, people are jumping ship. Macs, the cloud, thin clients, SaaS, Linux, etc... the threats to Microsoft's stature are real and the ship has begun to sink.

Can Microsoft retain its dominance, restore trust, and compete with all of the threats? In the long term... no.

The Windows PC as we know it is an endangered species that will be coveted by few. A new mixed breed of PC will evolve that promises a simpler and more reliable computing experience...

Tuesday, February 24, 2009

California Surf Tours is live

Yes, there really isn't much content on my new website called California Surf Tours http://www.californiasurftours.com but that is OK for now.

I would prefer that this endeavor be more organic and word of mouth.

So, if you know someone that wants to take a California Surf Tour, ask them to email john@californiasurftours.com.

Wow, I usually don't venture out of my area of expertise, but...

My research in the stock market shows that nobody knows what is going on...

Stocks up as Bernanke says recession may end soon

http://news.yahoo.com/s/ap/20090224/ap_on_bi_st_ma_re/wall_street_81

Bernanke fears recession could extend to 2010

http://news.yahoo.com/s/nm/20090224/bs_nm/us_usa_fed_bernanke_8

Wednesday, February 18, 2009

Exchange Hosted Filtering & SonicWALL

A quick note about Exchange Hosted Filtering & using a SonicWALL with Content Filtering...

The URL to check the Quarantine (http://quarantine.messaging.microsoft.com) will be blocked by the SonicWALL. I was required to add an Allowed Domain under Configure for the Content Filter Security Service in the SonicWALL.

I wonder if this was a SonicWALL oversight or on purpose.

Monday, January 12, 2009

SBS 2008 Migration Notes

Installed SBS 2008 #1 on new server
Brought laptop on wireless and wired network
Removed NetGear ProSafe firewall
Installed SOnicWALL TZ180
Called Cox to get IP address information
Confirmed IP with whatismyip.com
COnfirmed DNS pointers by doing a dig on the nameservers
Followed TechNet SBS 2008 instructions to confirm the following:
- Service pack levels
- Verify network settings (change to operate with only one nic, run IECWI, disble VPN)
- Raise domain and forest functional level from 2000 to 2003
No DVD available on old server
Downloaded the VirtualCDXPControlPanel to old server
Mounted SBS 2008 #1 .iso
Ran SBS 2008 Answer file tool from mounted .iso
Confimed answers with Steven
Chose SERVER1 & 192.168.16.10 for new server
New server already booted to Continue installation screen (not good)
Copied answer file to thumb drive
Connected new server to network
Inserted thumb drive
Clicked Next and confirmed Time/Date settings
Checked for Updates
Had to restart
At that time, I took the opportunity to address Dell shipped RAID (unusual 2 partitions on the RAID 5 container, also re-initialized the RAID 1 to delete the SBS 1st attempt)
Reinstalled, entered Product Key
Started 6:40pm
In the meantime, configured all Sonicwall Security Services
- Content Filter
- Gateway AV
- Intrusion Prevention
- Anti-Spyware
Updated SOnicwall firmware to 3.9.0.1
Exported Sonicwall settings
At roughly 7:10, the installation partially completed and used the answer file
Error that prevented completion, required Adprep not run on old server
Remounted .iso, and ran the following after ensuring no other DCs:
- adprep /forestprep (approx 15 minutes)
- adprep /domainprep
While waiting for adprep, added TermServ rule from Deltyme to new server
Also, required to install the KB943494 hotfix located in the Tool folder in the .iso
Pressed the Check Again button at 7:38pm
At approx 8:15pm received a meesage about AD repl taking a long time and asked if I wanted to continue to wait
At 8:30pm turned off the rule for SMTP to old server on the firewall
Concerned that maybe I need to reboot old server (did not reboot after hotfix and adprep)
Decided to reboot at 8:35pm on old server
Old server has degraded RAID (to be addressed)
Monitor back on new server at 8:45pm
On new server, GPO Task Processor failed (could have issues, but not sure if the GPOs will have much effect)
At 8:58pm the new server has rebooted (at least once) and appears to be continuing normally
At 9pm installation finished, but some non critical issues were encountered:
- The Cert Authority component cannot be configured
- Exchange Server 2007 cannot be installed
- The required Active Directory structure was not created
- The Group Policy setting for the virual private network cannot be created
- The required Active Directory structure was not created (again)
- Window Small Business Server group policies cannot be configured
- Windows Server Update Services cannot be configured
- Incoming and ougoing e-mail for Window SharePoint Services are not configured
- Incoming and ougoing e-mail for Window SharePoint Services are not configured (again)
- Window SharePoint Services is not configured
User the Windows SBS Console to try to handle issues
- Starting with Fix My Network (recommend 1st step)
No luck, the old server and new server did not complete properly
10pm calling MS emergency support
Case # SRX081205601735
10:05pm begin waiting for a callback
Tested remote access to new server
Callback aroun 10:45pm
MS tech looked at errors and recommended starting from scratch
Required Directory Service Restore (SBS DRS password is synched with administrator)
Ran restore on old server without any issues
In the meantime, I decided it would be a good idea to have my own backup copy so I copied the Thursday night backup (~117gb) to my Acomdata USB drive
Wiped RAID 1 partition on new server again using CNTRL-R and FastInit
Reinstalled SBS 2008 #1 on new server
Checked http://technet.microsoft.com/en-us/library/cc546034.aspx for any missed steps and reperformed steps
- Ran Internet connection wizard
- Raised domain and forest levels
- Installed STS SP3 (missed)
- Reran Adprep commands
- Reinstalled the hotfix
Continued installation
New server auto reboot at 1:45am
Note: Recommend having a movie or music on a laptop to keep yourself entertained
New server auto reboot again at 1:50am
Starting to see some slow progress at 2:20am
New server auto reboot again at 2:30am
2:45am viewing installation errors with MS tech because Exchange 2007 didn't install again
http://technet.microsoft.com/en-us/library/cc626197.aspx
Exchange wasn't in native mode
Not documented in the SBS 2008 Technet article (complained to MS tech about it)
Start over again at 3:50am

Important checks on source server
Service Packs and software
- SBS 2003 SP1
- Windows 2003 SP2
- Exchange 2003 SP2
- WSS (STS) SP3 is 11.0.8173.0 after install (check from Add/Remove, Support Info)
- Companyweb level in SharePoint Central 6.0.2.8165
- Verify .NET 2.0 or greater
- MSXML 6 SP1 or greater
- MS SQL MGMT 2005 SP2
Internet connection wizard (disable other network adapters)
Raise levels
- Forest
- Domain
Check for hotfix
Run SBS BPA
Take NTBackup of System State
Run Migration Tool from .iso which does the following
- Rerun adprep (/forestprep, /domainprep, /domainprep /gpprep)
- Exchange to Native Mode

Wiped RAID 1 on new server
Started install from CD
Noted procedure that states when to insert USB key (after language, before pressing Install Now)
5:39am manually confirmed time
6:41am installation complete with only one warning about an update that wasn't installed
Begin to perform Migration tasks
- Prior to doing any tasks, it was recommended to perform a complete backup of the new server
- Used my Acomdata (it formats the drive)
- Started backup job manually at 6:55am, finished in about 20 minutes for 22gb

Followed TechNet article with great care

7:40am began moving mailboxes
23 mailboxes, approx 13gb
10:45am, wow, completed finally, no errors


10am entered Frontbridge SMTP rules on SOnicwall
10:15am turned off allow all SMTP until Sam instructs me about spam prevention
10:30am sent an email to Premier Support requesting DNS change or login info for DNS Control Panel

Enabled Circular logging on new server

Noticed space on E: drive was extremely low, Circular logging wasn't turned on there
Turned it on and reclaimed some space

11am waiting on a callback from Sam


Sundday:

12pm copy Finances from \\server\finances on old server to D:\Finanances on new server
Reviewing Sam's email
Troubleshooting email issues
Testing http:\\remote.imaginationent.com
- Requires that the CertTrust package be installed from new server on PC
- Emailed myself the InstallCertPackage, installed on laptop
- Added remote.imaginationent.com A record to Apollo DNS
- Temporarily added host record on laptop to test
- Had to enable the Terminal Service Active X control on IE7
- remote.imaginationent.com is working properly

Found artcile on SBS 2008 Exchange AntiSpam (built-in) and requirement to add trusted SMTPServers to allow all email from EHS/Frontbridge (placed as a solution in SupportCenter)

Followed instructions on the Remote site to configure Outlook Anywhere and it works fine (requires InstllCertPackage)

2:20pm going to test Windows Mobile
- Run InstallCertPackage with option to install to mobile device

2:35pm begin copy of Users Shared Folder from old server to new server
Remove old server Group Poicy Objects according to TechNet - http://technet.microsoft.com/en-us/library/cc527585.aspx

Tested InstallCert, OWA, Remote, SharePoint, Outlook Anywhere with Sam, but it required a host entry for remote.imaginationent.com. Waiting fo Apollo hosting to update DNS (propogate). Received confirmation that it would be done by 9:45pm tonight.

Realized that I should use the Migration Wizard to relocate the Users share
Also, moved the Redirected Folder using the wizard as well

robocopy\\\Users\\\UserShares/E /COPY:DATSOU /LOG:C:\Copyresults.txt

Actually, it looks as thought they only use those Users folder on the old server for folder redirection. I need to confirm and ensure that users My Docs get copied into the newly set Redirected Folders on the D: drive of the new server (D:\User\FolderRedirections)

Went into File Server Resource Manager and removed disk quotas for all users.
Changed Server Configuration (Exchange), Mailbox, First Storage Group, Mail Database, Properties and changed the Warning to 3gb and removed Prohibit levels.