October 26, 2005
@ 10:53 PM

I rolled out Exchange 2003 SP2 this past weekend, a few days after it was released.

Noticed several administrative annoyances/comments/notes:

  • Public access locations (IIS Virtual Directories, POP3 server, SMTP server, etc...) have their permissions reset.  If you've disabled Integrated authentication due to compatibility problems (I use Basic with SSL encryption) all your clients won't be able to login.
    • Side note: best solution is to add alias to FQDN and make them login with their full email address instead of using AD username!
  • Calendaring control suddenly stopped working.
  • Backups
    • Make sure you reselect the folders for backup in Veritas.  Double check your backups work!
  • F-Secure for Exchange 6.40 works fine with 2003 with SP2.  Lovely. =)
  • Wait for the mobile upgrade pack to enable more functionality with push email alerting!

 
Categories: IT

October 18, 2005
@ 11:20 PM

Having created several bootable Windows CD-ROMs with Bart's PE Builder, I thought how nice it would be if I could use some of the plugins on running systems (i.e. without having to reboot). So in spring 2004 I started searching the Internet for useful utilities that can be run directly from CD-ROM. These were my requirements:

Must be available free of charge (at least for non-commercial use). If source code is available under a Free Software/Open Source license, that's even better.
Small is beautiful
Graphical user interfaces are nice (this is Windows after all...;-)
My focus is on diagnostic, network and security tools (no games or MP3 players...)

Here's my list. Download the tools, exctract the archives to a folder on your harddisk and burn them on a CD-ROM. Or put them on your USB-stick. If you leave out all unnecessary files (documentation, language files, etc.) and compress all executables with UPX, all these tools together (more than 600 executables) take less than 100 MB of disk space.

http://www.dirk-loss.de/win-tools.htm


 
Categories: IT

An efficient and feature rich BitTorrent client for Windows sporting a very small footprint. It was designed to use as little cpu, memory and space as possible while offering all the functionality expected from advanced clients.

Typical memory use less than 4 MB
Incredibly small: 94 KB

Multiple simultaneous downloads
Smart bandwidth usage
File level priorities
Configurable bandwidth scheduling
Global and per-torrent speed limiting
Quickly resumes interrupted transfers
UPnP support (WinXP only)
Supports popular protocol extensions
Localized to different languages

http://www.utorrent.com


 
Categories: IT | Tight

The Travelstar E7K100 expands Hitachi’s secondgeneration 7200 RPM 2.5-inch hard drive series with further design enhancements for data intensive applications requiring round-the-clock operation. The E7K100 provides leading-edge capacity, performance, durability and power utilization on a proven platform for quality and reliability. With its 100GB capacity, the E7K100 offers 66% more storage space as well as a 33% boost in sustained data rate over the record-setting Travelstar E7K60. Optimizations in the femto-based actuator/suspension enable the E7K100 to endure 300Gs of operat-ing shock, 1,000Gs of non-operating shock and 600,000 load/unload cycles, contributing to the Travelstar E7K100’s highly durable and rugged design. This combination of capacity, performance and shock tolerance enables the E7K100 to satisfy the demands for rugged, reliable storage in non-stop environments

Oh wow - 300Gs of operating shock.  $472 CDN + tax.  This is ONE TIGHT drive - something that you'd pull out of an old laptop and move into a new one, simply because of its rugged design.

Serious case of technology envy here. =)

http://www.tigerdirect.ca/applications/searchtools/item-details.asp?EdpNo=1597437


 
Categories: IT | Tight

October 11, 2005
@ 08:55 PM
Source: http://www.techgalaxy.net/Docs/ISA/ISA_KB.htm

Active mode FTP client programs cannot access an FTP server from behind Internet Security and Acceleration Server 2004
Describes a situation where FTP clients behind an ISA firewall cannot access an FTP server on a different network.

ISA Server 2000 settings and features that are not supported when you migrate to ISA Server 2004
Describes the settings and features that are included in ISA Server 2000 and ISA Server 2000 Feature Pack 1 that are not supported when you migrate to ISA Server 2004.
 
Clients cannot use a remote ISA Server 2004-based computer for a Web proxy over an ISA Server 2004 site-to-site VPN connection
Describes a problem where you cannot access the Internet when you configure Internet Explorer to use an ISA Server 2004-based computer in a remote site as your Web proxy server.
 
After you repair or update ISA Server 2004, the ISA Server 2004 firewall service may not start on a Windows Server 2003-based computer that has been upgraded from Windows 2000 Server
Describes a problem where the ISA Server 2004 firewall service does not start after you upgrade from Windows 2000 Server to Windows Server 2003. A workaround is provided.
 
ISA Server 2004 continuously prompts you for credentials when you try to access a Web listener that uses RSA SecureID authentication in ISA Server 2004
Fixes a problem that occurs because an authentication loop exists between ISA Server 2004 and the server that is running IIS.
 
HTTP compression support in ISA Server 2004
Describes the support for HTTP 1.1 in ISA Server 2004.
 
How to configure networks in ISA Server 2004
Explains some of the new features and configuration options in ISA Server 2004 that can help make an organization more secure.
 
Support for the Windows Server 2003 Network Access Quarantine Control feature in ISA Server 2004
Describes ISA Server 2004 support for the Quarantine Control feature of Windows Server 2003.
 
The RADIUS authentication process in ISA Server 2004
Describes the process that occurs when ISA Server is configured to use a RADIUS server for authentication and authorization of client requests.
 
Users are repeatedly prompted for credentials and authentication is not successful when a downstream computer that is running ISA Server 2004 uses Integrated Windows authentication to authenticate to an upstream computer that is running ISA Server 2004
Describes behavior that occurs if a downstream computer that is running ISA Server 2004 uses a non-English user name or password to authenticate to an upstream computer that is running ISA Server 2004.
 
How to configure ISA Server 2004 to log data to an SQL Server database
Describes how to configure ISA Server 2004 to log information to a SQL Server database.
 
An IPSec policy is not applied to internal translated network traffic when you use ISA Server 2004
Describes an issue where an IPSec policy is not applied to all traffic when your ISA Server 2004-based computer performs NAT and IP routing is enabled. Includes a workaround for this issue.
 
You are not prompted to restart Windows when you reinstall ISA Server 2004
Explains that because a registry modification is made when you first install ISA Server 2004 and remains when you remove ISA Server, you do not have to restart Windows after you reinstall ISA Server.
 
Users cannot submit data to a Web site that you publish by using client certificate authentication in ISA Server 2004
Describes an issue that occurs if you do not require all users to authenticate in the Web listener properties of a published Web site.
 
You cannot access an ISA Server 2004 Web site through a hardware balancer that is configured to use local triangulation
Describes a problem that occurs when you try to access an ISA Server 2004 Web site though a hardware balancer that is configured to use local triangulation. A hotfix available to resolve this problem.
 
You are prompted to insert disc 1 when you try to install ISA Server 2004
Fixes an issue that occurs when you try to install ISA Server 2004 if an evaluation version of ISA Server 2004 is already installed on your computer. In this scenario, you are prompted to again insert disc 1.
 
The ISACTRL and WSPSRV services do not start when you install ISA Server 2004 on a multiprocessor computer
Fixes a problem where the ISACTRL and WSPSRV services do not start as expected after you install ISA Server 2004 on a multiprocessor computer.
 
ISA Server 2004 firewall clients that use IPSec in the internal network cannot access external networks
Describes a problem where internal network clients cannot access the external network. Symptoms occur on ISA Server 2004 firewall clients that use IPSec and NAT.
 
The Advanced Logging (MSDE) component and the Firewall Client share component may not install correctly when you run the ISA Server 2004 setup program
Describes a problem where the Advanced Logging (MSDE) component and the Firewall Client share component do not install correctly. This article also describes a fix for this problem.
 
Clients may receive an "Error Code 500 Internal Server Error" error message if you use ISA Server 2004 to publish a Web site to a server that is on the internal network
Describes a problem where clients may receive an error message if you use ISA Server 2004 to publish a Web site to a server that is on the internal network.
 
You cannot perform certificate-based Web proxy authentication in ISA Server 2004
Explains that Web proxy client authentication by certificate is not supported in ISA Server 2004.
 
List of common scenarios that the "VPN Roaming Clients and Quarantine Control in ISA Server 2004" document provides solutions for
Lists common scenarios that the "VPN Roaming Clients and Quarantine Control in ISA Server 2004" document provides solutions for. Contains a link to the document.
 
Logging to an SQL database in ISA Server 2004 does not work
Describes an issue where you receive an error message if you configure ISA Server 2004 logging to log to an SQL database and the logging does not work.
 
You cannot install ISA Server 2004 Administration Tools alongside ISA Server 2000 Administration Tools
Explains that Microsoft does not support a parallel installation of ISA Server 2004 Administration Tools and ISA Server 2000 Administration Tools on the same computer.
 
You receive a "Setup failed while registering Wspadmin.dll" error message when you try to install ISA Server 2004
Discusses an issue that may occur if you try to install ISA Server 2004 on a computer where a previous ISA Server installation or a previous Proxy Server installation is not completely removed.
 
Using ISA Server 2004 with Exchange Server 2003
Describes common scenarios that have solutions that are described in the Using ISA Server 2004 with Exchange Server 2003 document. The article contains a link to the document.
 
Outlook Web Access Server Publishing in ISA Server 2004
Describes common scenarios that have solutions that are described in the Outlook Web Access Server Publishing in ISA Server 2004 document. This article contains a link to the document.
 
You cannot use an IP address for AutoDiscovery in ISA Server 2004 Web Proxy Client
Provides a fix that lets you reset your ISA Server 2004 functionality so that you can use an IP address for AutoDiscovery instead of an FQDN.
 
Users receive a "The parameter is incorrect" error when they try to access a Web site through ISA Server 2004
Describes a problem that occurs if ISA Server is running on a stand-alone server and if the upstream proxy server is running on that same stand-alone server computer.
 
Users receive an "Error Code 502: Proxy error. The parameter is incorrect. (87)" error when they visit certain URLs after you configure HTTP content filtering based on signatures or on extensions in ISA Server 2004
Describes a problem that occurs because of a problem in the HTTP Filter component in ISA Server 2004. A hotfix is available to resolve this problem.
 
How to bypass the proxying of HTTP requests in ISA Server 2004
Describes how to bypass the Web Proxy application filter for outbound HTTP requests.
 
Lockdown mode of operation in ISA Server 2004
Discusses the lockdown mode of operation in ISA Server 2004.
 
Controlling secure Internet access by using ISA Server 2004
Describes common scenarios that have solutions that are described in the Controlling Secure Internet Access Using ISA Server 2004 document. This article contains a link to the document.
 
You may receive a blank page when your browser submits a POST request to an ASP Web page through ISA Server 2004
Describes a problem where a POST request to an ASP Web page through ISA Server 2004 generates a blank page. You must apply a hotfix to resolve this problem.
 
After you install the ISA Server 2004 Firewall Client program on a Windows 98-based computer, the Firewall Client program may stop responding, or Winsock programs may unexpectedly quit
Describes a problem that may occur if you configure a user-based policy that applies to the users who run Windows 98-based computers.
 
The differences between the Back Up feature and the Export feature in ISA Server 2004, and the differences between the Restore feature and the Import feature in ISA Server 2004
Describes the main differences between the Back Up feature and the Export feature in ISA Server 2004, and the main differences between the Restore feature and the Import feature in ISA Server 2004. Includes recommended uses for the different...
 
How to install ISA Server 2004 hotfixes and updates
Provides a overview of procedures and policies that you can use when you install ISA Server 2004 hotfixes.
 
VPN clients may be disconnected when you restart the IPsec Policy Agent service on a computer that is running ISA Server 2004
Describes how VPN clients may be disconnected from an ISA Server 2004 computer when you restart the IPsec Policy Agent service in Windows 2000 or the IPSec Services service in Windows Server 2003.
 
How to install and use certificates for SSL connections in ISA Server 2004
Describes how to install a root certificate for SSL connections in an ISA Server 2004 environment.
 
Clients receive a "500 Server" error message if a Web server requires a Certificate Revocation List in ISA Server 2004
Describes a problem where clients receive a "500 Server" error message if a Web server requires a Certificate Revocation List in Internet Security and Acceleration Server 2004.
 
Differences between server publishing rules and access rules in ISA Server 2004
Describes some of the scenarios where you must use certain types of rules to give external access to a server.
 
MMS stream splitting is not supported in ISA Server 2004
Discusses that Microsoft Media Server (MMS) stream splitting is no longer supported in ISA Server 2004.
 
An established connection does not appear on the Sessions tab in ISA Server 2004
Describes an issue where a connection to a published server does not appear on the Sessions tab under Monitoring in ISA Server.
 
How to manually remove the MSDE database in ISA Server 2004
Describes how to detach the MSDE database files so that you can remove the database successfully.
 
How to turn on ICMP proxy Ping requests in ISA Server 2004
Describes how to configure ISA Server 2004 SecureNAT to pass ICMP packets between internal and external hosts.
 
Cannot open ISA Server Management in ISA Server 2004
Explains why users who are not in the Administrators group of the local ISA Server 2004 computer cannot open ISA Server Management, the Microsoft Management Console (MMC) that is included in ISA Server 2004.
 
Core services that must be enabled for your Internet Security and Acceleration (ISA) Server 2004 computer to function correctly
Provides a link to a Microsoft Web site that lists the services that must be enabled on your ISA Server 2004 computer for ISA Server and the operating system of that computer to function correctly.
 
The migration stops responding when you try to migrate configuration settings from an ISA Server 2000-based computer that uses SSL certificates to an ISA Server 2004-based computer
Describes an issue that occurs when you try to migrate configuration settings from an ISA Server 2000-based computer that uses SSL certificates to an ISA Server 2004-based computer. The migration stops responding. You do not receive any notification.
 
Site-to-site VPN in ISA Server 2004
Lists the common scenarios that the "Site-to-Site VPN in ISA Server 2004" document describes solutions for. Contains a link to the document.
 
How to configure, to manage, and to troubleshoot the Firewall client in Microsoft Internet Security and Acceleration (ISA) Server 2004
Describes how to obtain, to install, and to use Firewall Client Tools for Microsoft Internet Security and Acceleration (ISA) Server 2004.
 
You cannot remotely manage ISA Server 2004 in a network environment where IPSec is enforced
Describes an issue where you can no longer remotely manage ISA Server 2004 in an IPSec environment. Symptom occurs after an IPSec session expires.
 
Session state management may not work as expected when ISA Server 2004 accesses a Web site that uses the round robin feature of DNS to achieve load balancing
Describes a problem in ISA Server 2004 where user data for unique sessions may not be retained. A hotfix is available to resolve this problem.
 
Users who do not have the appropriate permissions can receive restricted content from ISA Server 2004
Fixes an issue in where authenticated content is served to users who do not have access permissions to cached content in ISA Server 2004.
 
The ISA Server RPC filter blocks RPC traffic after Windows Server 2003 Service Pack 1 is installed on a computer that is running ISA Server 2004 or ISA Server 2000
Discusses a problem that may occur in ISA Server 2004 and in ISA Server 2000 after Windows Server 2003 SP1 is installed. Resolution is provided.
 
How to configure connectivity verifiers to monitor selected computers and networks in ISA Server 2004
Discusses how to use connectivity verifiers to monitor or poll the status of upstream computers and downstream computers. Also discusses how to use connectivity verifiers to monitor networks that ISA Server 2004 manages.
 
You cannot use the ISA Server administration COM objects to delete a rule in ISA Server 2004
Resolves a problem that may occur if a rule name contains non-English uppercase letters or if the application changes the locale.
 
When you try to re-authenticate the OWA client on the forms-based authentication page, you may receive an "Unknown Request" error message in ISA Server 2004
Describes a problem where you try to re-authenticate an OWA client after the forms-based authentication cookie has expired on the OWA client. In this case, ISA Server 2004 reports an “Unknown Request” error.
 
Configuration changes that are made to Routing and Remote Access when you install Internet Security and Acceleration (ISA) Server 2004
Describes some of the changes that are made to your existing Routing and Remote Access configuration when you upgrade that configuration to ISA Server 2004.
 
Features of single network adapter mode in ISA Server 2004
Describes the features and limitations of Microsoft Internet Security Acceleration and Server 2004 when you install it on a computer that has a single network adapter.
 
Enabling RADIUS authentication for the OWA Forms-Based Authentication in ISA Server 2004
Describes how to resolve a problem in ISA Server 2004 where you cannot use the RADIUS authentication protocol when you use the OWA Forms-Based Authentication.
 
"The ISA Server denies the specified Uniform Resource Locator (URL)" error message when a client tries to connect to the Internet through ISA Server 2004
Explains that after you install ISA Server 2004, client browsers cannot connect to the Internet if you have not configured access rules.
 
A clarification of the "Percentage of free memory to use for caching" option in ISA Server 2004
Explains that the "Percentage of free memory to use for caching" option actually indicates the amount of physical memory that ISA Server allocates for caching.
 
The MSDE instance in SQL Server Service Manager appears as "Not Connected" after you install ISA Server 2004
Describes a problem where you cannot start the Microsoft Data Engine instance in SQL Server Service Manager. Explains how to use the Microsoft Management Console to start and stop SQL services instead.
 
VPN roaming clients and quarantine control in ISA Server 2004
Lists common scenarios that the "VPN Roaming Clients and Quarantine Control in ISA Server 2004" document describes solutions for. Contains a link to the document.
 
When to use the ISA Server 2004 SMTP filter and Message Screener
Lists common scenarios that have solutions that are described in the "Using the ISA Server 2004 SMTP Filter and Message Screener" document. The article contains a link to the document.
 
How to obtain the latest ISA Server 2004 service pack
Contains a link to download the latest service pack for ISA Server 2004.
 
How to configure dial-out access for clients in ISA Server 2004
Describes how to configure ISA Server 2004 to use a dial-up connection to connect to the Internet.
 
How to bypass the Web Proxy service in ISA Server 2004
Describes how to unbind the Web Proxy application filter from the HTTP protocol to bypass the Web Proxy service in ISA Server 2004.
 
You cannot access the Exchange Server computer by using OWA after you turn on forms-based authentication in ISA Server 2004
Describes an issue that occurs if you have forms-based authentication turned on for both the ISA Server computer and the Exchange Server computer.
 
How to configure ISA Server 2004 to allow for RPC over HTTP client connections from Office Outlook 2003 to Exchange Server 2003
Explains how to create a server publishing rule, obtain a Web server certificate from IIS, and then create a new Web publishing rule so ISA Server 2004 allows for RPC over HTTP client connections from Office Outlook 2003 to Exchange Server 2003.
 
You may not be able to connect to a Proxy Server 2.0 server or to an ISA 2004 server or ISA 2000 server that requires a UDP-only control channel by using an ISA Server 2004 Firewall client
Describes an issue where an ISA Server 2004 Firewall client may not be able to connect to a Proxy Server 2.0 server or to an ISA 2004 server or ISA 2000 server that requires a UDP-only control channel.
 
A question mark may appear next to a client user name in ISA Server 2004
Explains that a question mark may appear next to a client user name if the user has not been authenticated by ISA Server.
 
ISA Server 2004 Standard Edition does not support NLB functionality
Explains that ISA Server 2004 Standard Edition does not support NLB functionality. ISA Server 2004 Standard Edition does support third-party NLB products.
 
Some 16-bit files may be installed when you install ISA Server 2004
Describes how some 16-bit files may be installed when you install Microsoft Internet Security and Acceleration Server 2004.
 
An update is available to prevent Configuration Storage server account settings from expiring when you use certificate authentication in ISA Server 2004, Enterprise Edition
Describes an update that you can install to prevent Configuration Storage server connectivity from failing when you use certificate authentication.
 
After you turn off logging for a Web publishing rule, ISA Server 2004 continues to log entries that match the rule
Resolves a problem that occurs in ISA Server 2004, Standard Edition where entries are logged even after you turn off logging for a Web publishing rule.
 
How to publish an SSL Web site by using SSL tunneling in ISA Server 2004
Describes how to use the "Publish a Secure Web Server" wizard to create a Secure Sockets Layer (SSL) tunnel to an internal Web server.
 
Cannot configure access to Exchange Server between two routed networks in ISA Server 2004
Describes an issue where you cannot use an access rule to provide RPC filtering between two routed networks.
 
How to schedule content download jobs to occur several times per day in ISA Server 2004
Describes how to schedule content download jobs to retrieve HTTP information from the same URL several times per day in ISA Server 2004.
 
How to disable the IP Spoof Detection feature in Microsoft ISA Server 2004
Provides a method to disable the IP Spoof Detection feature in Microsoft ISA Server 2004 by modifying the Windows registry
 
Cannot connect to a service from a particular client computer in ISA Server 2004
Describes an issue where a client computer cannot connect to a service when it exceeds the number of allowed connections to the ISA Server computer.
 
"The certificate request failed because of one of the following conditions" error message when you request a certificate in ISA Server 2004
Describes an issue where the default strict enforcement of RPC traffic in ISA Server 2004 prevents you from requesting a certificate by using the Microsoft Management Console (MMC). Explains how to resolve this issue by modifying the firewall policy.
 
How to configure the firewall policy if pcAnywhere is installed on an ISA Server 2004-based computer
Describes how to configure protocol definitions and an access rule that permits pcAnywhere to function correctly if the pcAnywhere program is installed on your ISA Server 2004-based computer.
 
ISA Server 2004 does not maintain client credentials between requests
Describes a problem where ISA Server 2004 closes a Web proxy client connection when the server must connect to an upstream ISA Server computer or to a Microsoft Proxy 2.0 server to fulfill the client request.
 
When you use the reporting feature in ISA Server 2004 to generate a link that appears in an e-mail message, the link is broken
Describes a broken-link scenario that may occur when you publish an Internet Security and Acceleration Server 2004 report to an e-mail message.
 
How to use ISA Server 2004 to redirect requests to different Web sites based on the client IP address
Describes how to configure your ISA Server 2004-based computer to redirect client requests to different Web sites. This redirection is based on the IP address of the client.
 
Programs and services on a Firewall Client computer may not be able to access remote resources in ISA Server 2004
Describes an issue ISA 2004 Client Firewall computers cannot access remote resources. This issue occurs when the remote resource in question runs under certain user accounts that are denied remote access through the Firewall Client.
 
You may receive a "Setup failed while creating the services configuration" error when you try to install ISA Server 2004 on a Windows Server 2003-based domain controller
Explains why you cannot install ISA Server 2004 on a Windows Server 2003-based computer that is in a Windows 2000 domain. The article discusses two methods to solve this problem.
 
How ISA Server 2004 caches responses to Web publishing client requests in reverse proxy mode
Explains how ISA Server caches incoming requests for Web objects on internal Web servers. Also describes how to configure caching in ISA Server.
 
A change to the UDP protocol direction in a server publishing rule may not take effect in ISA Server 2004
Explains that you must restart the Microsoft Firewall service after you modify a server publishing rule to change the UDP protocol direction.
 
How to generate a monthly report in ISA Server 2004
Describes how to configure generated reports so that they complete successfully even if the months contain different numbers of days.
 
How to configure a PPPoE connection in ISA Server 2004
Describes how to configure ISA Server to automatically connect to a DSL or an ADSL service that requires user authentication.
 
You receive a "The request was rejected by the HTTP Security filter" error message when you try to open a message from an Exchange Server that is published in ISA Server 2004
Describes an issue where Outlook Web Access users cannot open or preview a message that contains a high-bit character in the subject line.
 
Address translation rules and policy rules in a multi-networked environment in ISA Server 2004
Describes some of the network relationships that occur in a multi-networked environment.
 
How to use an ISA Server 2004 computer to block transparent HTTP clients without requiring authentication
Explains how to block transparent HTTP clients without requiring authentication by using ISA Server 2004. To do this you must create a new protocol, create a new access rule, and then remove the HTTP protocol from the Web Proxy Filter.
 
ISA Server 2004 does not support traffic redirection
Explains that TCP traffic may not be received successfully from a remote subnet computer that resides on the same subnet as an internal interface on a computer that is running ISA Server 2004.
 
A user is repeatedly prompted for credentials after you publish an OWA server by using a Web publishing rule together with Forms-Based authentication in ISA Server 2004
Fixes a problem that occurs if a user whose user name or password contains umlaut characters tries to access Exchange by using Outlook Web Access. Workaround is included.
 
Users who are connected to the Internet experience a delay when you create a new access rule or when you apply changes to an existing access rule in ISA Server 2004
Describes a problem that occurs if ISA Server connects to an upstream proxy server by using that proxy server's IP address. A hotfix is available to resolve this problem.
 
Clients receive an "Error 792: The L2TP connection attempt failed because security negotiation timed out." error message when they try to complete a VPN connection to ISA Server 2004
Discusses an issue where an L2TP connection cannot be completed successfully after you configure ISA Server to block IP fragments.
 
Changes to the firewall policy only affect new connections in ISA Server 2004
Explains that when you make a change to the ISA Server 2004 firewall policy, the change does not affect existing active sessions.
 
Outbound access to certain domains is permitted in the default installation of ISA Server 2004
Describes an issue where the ISA Server-based computer is permitted access to certain domains for management and maintenance purposes.


 
Categories: IT

This page contains instructions how to configure the firewall in Windows Server 2003 Service Pack 1 to work together with F-Secure Anti-Virus server products. The configuration is done through Microsoft's Security Configuration Wizard, introduced in the Windows Server 2003 SP1. The Security Configuration Wizard is now part of the operating system - an automated tool to create security policy for a Windows Server 2003 SP1+ environments.
http://support.f-secure.com/enu/corporate/w2003sp1/


 
Categories: IT

October 8, 2005
@ 09:59 PM

This page contains driver updates for Computer Associates' corporate antivirus solutions.
http://supportconnectw.ca.com/premium/antivirus/downloads/nt/4.5/ildrvupdate.asp

eTrust Antivirus 7 for Windows NT/2000/XP Solutions & Patches
http://supportconnectw.ca.com/public/antivirus/downloads/nt/7.0/etavwinnt_70.asp

Signature Updates (manual)
http://www3.ca.com/support/vicdownload/SignDownload.aspx?CID=49737


 
Categories: IT

Event Type: Error
Event Source: Microsoft Firewall Client 2004
Event Category: None
Event ID: 1
Date:  10/8/2005
Time:  8:28:09 PM
User:  N/A
Description:
Application [svchost.exe]. Authentication failed. The user credentials were not accepted by ISA Server.  Verify that the user account running this application has the required permissions.

Solution:

Ensure that UDP and TCP port 1745 from client to server access is enabled (Access rule).


 
Categories: IT

October 5, 2005
@ 03:32 PM

ImgBurn can write most types of CD / DVD images and it supports all the latest writers (including booktype / bitsetting on many of the major ones - i.e. BenQ, LiteOn, NEC, Plextor, Sony). You can even use ImgBurn to erase / format your rewritable media!

ImgBurn will try its very best to burn your DVD-Video double layer images using the layer break you've specified in the IFO files, but it can also calculate the best place for you, to save you the trouble.

http://www.imgburn.com/


 
Categories: IT | Tight

October 5, 2005
@ 07:57 AM

http://www.zenphoto.org/

Zenphoto is an answer to lots of calls for an online gallery solution that just makes sense. After years of bloated software that does everything and your dishes, zenphoto just shows your photos, simply. It's got all the functionality and "features" you need, and nothing you don't. Where the old guys put in a bunch of modules and junk, we put a lot of thought. We hope you agree with our philosopy: simpler is better.

Don't get us wrong though – zenphoto really does have everything you need for your online gallery, and you'll even stare in awe at some of the innovative innovations we innovated upon. Here are some of the wonderful things about it:

Your standard gallery stuff, the way everyone knows it should work: index, albums, and images. And of course, automatically generated thumbnails and sized-down images for your time and bandwidth saving pleasure.
Upload any way you like. Want to use FTP? Stick your photos in a new folder in the /albums folder, and it's an album. Want to use your web browser? Hit the control panel, click upload, enter some names and load your pics. Simple. Want to use e-mail? Sorry, not ready yet. E-mail your picture to your grandmother and she can probably figure it out.
Comments! Just like on your blog, people can leave comments. Just like on your blog, you can smite them down with a single click if you don't like them.
AJAX-powered edit-while-you-browse, yes, just like flickr (we like flickr, but we also already pay for lots of online storage, hence, we like zenphoto).
Theme engine! Kind of like a steam engine, but more powerful... except when pulling a train. The theme engine is completely flexible; you can make your own themes, you can switch how your whole gallery looks at the click of a button, and you can make it look like your blog! (yeah, let's see you do that, flickr...).

That's just the beginning. There's lots more in store for zenphoto in the future, as you can see in the roadmap/to-do list. Major plans include native WordPress integration (in many sexy ways), sorting by dragging around the little thumbnail thingies, EXIF, RSS, Plugin API, Searching, custom dynamic and user-defined groupings, and even more! Keep checking back for news and new versions.


 
Categories: IT

CSS rules don't work in all browsers...

http://centricle.com/ref/css/filters/?highlight_columns=true


 
Categories: IT

October 5, 2005
@ 01:11 AM

This download provides the DirectX 9.0c end-user multi-languaged redistributable that developers can include with their product. The redistributable license agreement covers the terms under which developers may use the Redistributable. For full details please review the DirectX SDK EULA.txt and DirectX Redist.txt files located in the license directory.

http://www.microsoft.com/downloads/details.aspx?FamilyID=9930efa6-9f7b-4c8a-aea2-97dd6ab307a2&DisplayLang=en


 
Categories: IT

If you are an Enterprise IT Pro who is installing or supporting Windows SBS (Small Business Server) 2003 for the first time or who just wants to know more about it, this paper is for you!
This paper begins with a brief survey of the Windows SBS 2003 design philosophy. It then continues with the Top 10 must-know facts that Enterprise IT Pros unfamiliar with Windows SBS often miss, it highlights the Top 10 cool features of Windows SBS, and then it concludes with a quick look at some of the standard scenarios that you’re likely to find in many Windows SBS installations

http://www.microsoft.com/downloads/details.aspx?FamilyID=71211053-ccd6-4f2b-bbd9-5e7b97c232ec&DisplayLang=en


 
Categories: IT

October 3, 2005
@ 10:29 AM

I woke up this morning and discovered that my new WD3200SD plugged into an Adaptec 1210SA (JBOD configuration) is "Missing"/"Failed" in Disk Management in Windows 2003 with SP1.

Event log reveals this:

Event Type: Error
Event Source: LDM
Event Category: None
Event ID: 2
Date:  10/3/2005
Time:  10:21:38 AM
User:  N/A
Description:
INTERNAL Error - The specified plex contains disabled subdisks  (C1000078).

What the heck?  The drive shows fine at system startup.  Its picked up by the controller as "Healthy" and lists the whole HDD size.

Updating to build 45 of the driver causes the server to restart at Windows bootup.  I moved the drives attached to the 1210SA to another computer and update it to build 45.  Access to affected drive restored.

I'm not surprised that it works on a newer driver version; I'm annoyed that build 45 won't install on this file server.  Its a clean format with NOTHING installed except SP1 and the latest hotfixes!

Oh well =).


 
Categories: IT

Set Internet Explorer Homepage. Stop your home page being changed. It is changed back each time you login. Will affect all users of your machine.

User Configuration: Windows Settings: Internet Explorer Maintenance: URLs: Home Page

Disable External Branding of Internet Explorer. Fed up with "Internet Explorer Provided by..." all over your browser. Turn it off with this change:

User Configuration: Administrative Templates: Windows Components: Internet Explorer: Disabled External Branding

Disable Auto Play. Turn off auto play of new CD-ROMs and music CD's:

User Configuration: Administrative Templates: System: Disable Auto Play
Computer Configuration: Administrative Templates: System: Disable Auto Play

Remove CD Burning Features (Windows XP). If you have 3rd Party CD burning software, then the built in tools can get in the way. Turn them off.

User Configuration: Administrative Templates: Windows Components: Windows Explorer: Remove CD Burning Features

Turn Off Personalised Menus. Does the start menu annoy you by not showing everything? Turn off personalised menus for all users by enabling this setting.

User Configuration: Administrative Templates: Windows Components: Start Menu and Task Bar: Disable Personalised Menus

Turn off the "Set Program Access and Defaults" options. Introduced with the latest service packs was the option to change the default programs on Windows. You may want to disable this option.

User Configuration: Administrative Templates: Control Panel: Add or Remove Programs: Hide Set Program Access and Defaults page

Recovery Console - Allow Floppy Copy and Access to all drives and folders. If you have installed the recovery console, then you need to make this change before the recovery console needs to be used. It will give you access to the entire machine should you need to use the recovery console.

Computer Configuration, Windows Settings, Security Settings, Security Options, Recovery Console, Allow Floppy Copy and Access to all drives and folders.

Disable Shutdown Event Tracker (Windows XP and Windows 2003 Server). If you have used Windows 2003 server you will have seen the new "Shutdown Event Tracker" facility where you have to choose a reason for shutting down the server. It can also be enabled in Windows XP. This is for statistic collection. If you want to turn this new feature off on all machines, then make the following change.

Local Computer Policy, Computer Configuration, Administrative Templates, System, where you will find it under "display event tracker".


--------------------------------------------------------------------------------

Applying Internet Explorer Security Settings to All Machines

One of the features of Group Policy is its ability to apply security settings to Internet Explorer that takes affect on all machines in the OU. The most useful of this is to add Intranet sites to the list so that Integrated Windows Authentication Works.

However the capability to do this is not that clear. However you can set it how you like.

Open the Group Policy editor for the domain.
Go to the following location in the Group Policy location: User Configuration, Windows Settings, Internet Explorer Maintenance, Security.
In the right window you will see an object called "Security Zones and Content Ratings". Double-click it to open it.
The "Security Zones and Content Ratings" window will open. In the section labelled "Security Zones and Privacy" there are two radio buttons. Choose the second one - "Import the current security zones and privacy settings" so that "Modify Settings" becomes enabled.
Click on "Modify Settings".
The Internet Explorer security window will be opened and you can change the settings to what you wish.
For example, if you want to add an address to to the list of sites in the Intranet zone (allowing you to use Windows Integrated Authentication) you need to do the following.
Click on "Local Intranet" so that the "Sites" button becomes enabled.
Click on the "Sites" button.
You will see three options already enabled. Leave those alone and click on the "Advanced..." button below them.
Enter the addresses of the sites you want to include.
Note. You can use wildcards. Therefore if you have sites called home.domain.com and intranet.domain.com you might want to enter *.domain.com instead.
If you are using a certificate on these sites, then you could enable "Require server verification (https:) for all sites in the zone" but you should test first.
Once you have finished making your changes just click "OK" until you are back to the Group Policy window again.
You will need to log off and log back on again for the changes to take affect on workstations.
These settings override any that the users may have put in themselves, so be aware before you enable the features.


--------------------------------------------------------------------------------

Third Party and Other Application GPO Plugins

Third parties are now starting to provide Group Policy controls.

Diskeeper: The latest version (9.0) has introduced group policy control.

Power Saving Options: You cannot control the power options via Group Policy, but the Energy Star group in the US have produced group policy addins that offer this facility. You can download them from here:http://www.energystar.gov/index.cfm?c=power_mgt.pr_pm_ez_gpo

Microsoft Office: Don't forget that if you download and install the Office Resource Kit (free download from MS) then you get control over Office applications as well. If you are using mixed versions of Office then you will need to install the ResKit for each version and set the GPO options appropriately.


 
Categories: IT