____________________________PLAY ANN____________________________
____________________________PLAY OPENING MUSIC____________________________
[Keith] Welcome to the Mind Of Root. I'm Keith Albright
[Steve] and I'm Steve Murawski.
[Keith] This is Episode 70 recorded on October 8th, 2008.
Chit-Chat - What's going on with you?
[Steve]
[Rich]
[Keith]
Housekeeping Items
[Rich]
[Steve]
[Keith]
- Resume Peer Review - Send your resume to us at resume [at] mindofroot.com before October 31st, 2008. At that time, we'll assign a resume to each of the participants with one week to reply with your comments/suggestions. The reviewer will respond directly to the resume writer via email with their comments. If folks want a place to post their resume on the wiki, I'll create a resume corner too.
- I hate to use this as an example, but if you listen to Mike Smith of the Mike Tech Show, he just got laid off last week. I give him a ton of credit how he is approaching this positively. Incidentally, if you are in the Philadelphia area, and you could use a consultant,I would normally promote myslef, but in this case email Mike at MikeTechShow? [at] gmail.com. He's taken this as an opportunity to get his consulting business going stronger.
____________________________READ IDERA AD COPY____________________________
This show is brought to you by Idera where you can get free tools –
not one, but FOUR free tools for SQL Server!! Check them out at
http://www.idera.com/FreeTools. You'll find cool free tools for SQL Server
performance monitoring, backup, permissions and more….all designed to
help you manage your SQL world. While you're there, don't forget to
download a free 14-day trial of any of Idera's award winning
enterprise products -- including SQL diagnostic manager. Our friends at
Idera are helping you manage your Windows world!
____________________________PLAY PROMO____________________________
- Make your Mac Phone home [KEITH]
-I've kicked this idea around for a little while. I searched and found this scripts already written.
-We've had a link to Security Monkey blog on our site and it's always been a favorite of mine just for the case stories. I never searched back and found he had stuff like this up there.
-This is clean and simple. It hits a custom URL based off machine serial# and you will see the 404 in your logs.
- Google Labs introduces Mail Goggles [STEVE]
-If you have a
GMail? account, you can enable the "Labs" feature (from the Settings menu, if I remember correctly), and have access to a bunch of neat
GMail? addons that are helpful, weird, or just interesting.
-One of the new features in the Labs is Mail Goggles. You can set a time frame that when you try to send an email, it will prompt you with a number of math questions, to see if you are competent to be sending this email. If you are often emailing in the middle of the night and tend to regret those mail messages, this might be the addon for you!
- From Listener....Dr. Glenn [KEITH]
-I am too contemplating rolling out 64bit Vista, but one of the “game stoppers” has been no 64bit Cisco VPN client. Any suggestions here? Love the Show. - Dr. Glenn / Burbank, CA
-I couldn't believe that Cisco wouldn't have a 64-bit version, then I saw they indicate you need to upgrade to their new
AnyConnect? VPN client.
-Here's the rub, the
AnyConnect? client does not support IPSEC. It only supports SSL and DTLS with an ASA appliance running 8.0(2) blah blah blah. Essentially, it says upgrade your entire VPN infrastructure.
-Microsoft has a KB article on the status of vendor VPN clients. Many are lax in the 64-bit area, but there are a few third party solutions.
-Juniper actually sells a re-branded version of the
SafeNet? SoftRemote? IPSEC client which does have a 64-bit version available.
-Assuming you have full access to the configuration, the
SafeNet? client allows you to granularly adjust all the phases of the VPN.
-Not sure on the Cisco equipment, but you can easily see on the Juniper the encryption algorithm, hash algorithm, and key group for the auth and key exchange phases.
-
OpenVPN? does not support IPSEC, but I did find a free VPN client from Shrew Soft that now supports Vista 64-bit. I downloaded it and installed it on my Vista box and it is very nice.
-Built-In Windows IPSEC VPN capabilities? fuggedaboudit! Microsoft only assumes you are using
L2TP? tunnels or IPSEC to another Windows box.
- Recovering Files from a damaged Sharepoint Install
-So, last week I alluded to an problem at work that caused me a bit of extra stress. I had installed
SharePoint? (WSS) in the standalone mode to try it out as an option to migrate away from a shared network drive that we had. I moved most of the user documents to the Sharepoint server and things were humming along nicely. I was taking database backups and my shared network drive was nice and clean.
-Well, all good things come to a fiery end, and so did this. I was notified that no one could access any of their files and that the Sharepoint site was not responding.
-I tried all the basic troubleshooting steps, checking event logs, IIS manager, etc.. I could not even get to the sharepoint configuration site. I was not a happy camper. I began searching for ways to get this back online. I tried re-installing sharepoint, but found that the Windows Internal Database was somehow corrupt. It advised me to fix it via the Add/Remove Programs (where there was no entry). I then tried moving the database to a SQL Server, but it would not accept any account credentials, even though I had database users with rights to the DB.
-I was getting very frustrated and needed to get the files out an available. I did some searching and found a C# program that someone wrote for that very purpose. I translated that into
PowerShell and set some filters on the query so I could start multiple scripts with no overlap.
-iCal on Mac for family calendar. Any thoughts on the best way to sync to iBook? Blackberry?
-
____________________________PLAY SWEEPER____________________________
Listener Feedback
From listener....Vincent
- Vincent wrote in with a scenario and, since I'm in a smaller environment, I wanted to throw this out for ideas.
-We have been working on DR plans for our business. We have 8 branches. All servers are Centralized, except a dc/fileserver at each branch. We now have a cisco call manger and a massive VM ESX server at a second branch which is connected via a GB fiber link to our main datacenter. All branches are connected via a 10 mip fiber link, save the DR site.
-I am working on the exchange server now I am thinking about having a secondary exchange 2007 vm spinning taking replication from our main site. I have never done this and don't know exactly how I will accomplish this yet, so I am open for suggestions. I am also thinking about spinning up a second Cisco Unity server on the ESX server, I have read you can virtualize a unity server and use your original license key if you change the mac of the vm to the mac address of the original server. Of course these
VMs? would only be used in production in a DR mode.
[Steve] My thoughts -> I would sit down with the stakeholders (with decision making power, or whose influence can get you the funding for licensing), and find out what type of interruption in service they expect in the case of a failure, and then be honest with they about how much it will cost to get that running. If your licensing for Unity covers that, great! I know that the new licensing from MS allows for easier moving of licenses between virtual servers, but I think you will need two licenses if you are going to have one up and running for replication purposes (check with your licensing expert).
Any other thoughts? Listener suggestions? Let us know how it goes!
Frappr Map Entries
Quick thanks for Dave L., Hal Rottenberg, and a kid on the toilet for posting pix on the Frappr map. The kid on the toilet had no name other than 'GO RAIDERS', so I'm assuming they are from Oakland, CA.
____________________________PLAY SWEEPER____________________________
Website Picks
Rich - http://
Steve - http://
Keith - http://
Last Call
Anyone....Anyone....Buehler.....Buehler....
Closing
All right, well that is it for the show. For listener feedback; you can email us at Feedback [at] mindofroot.com or post a comment on the main site at mindofroot.com. If you use iTunes, you could write a review. If you just want to show us your listening, drop a pin on the Frappr map...there's a link on the show site.
Lastly, you can drop any show ideas or topic requests on the wiki. There is a link to the wiki on the main show site. If you would like to participate in the show; either through an interview, a segment contribution, or any other way, please let us know. We are also a member of the Techpodcast networks. Check out some other great shows by going to Techpodcast.com.
Thanks everyone.