<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>318 Tech Journal &#187; Windows</title>
	<atom:link href="http://techjournal.318.com/category/windows/feed/" rel="self" type="application/rss+xml" />
	<link>http://techjournal.318.com</link>
	<description></description>
	<lastBuildDate>Wed, 01 Feb 2012 22:09:36 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=abc</generator>
		<item>
		<title>Apple Education Licensing for Microsoft&#8217;s Active Directory</title>
		<link>http://techjournal.318.com/windows/apple-education-licensing-for-microsofts-active-directory/</link>
		<comments>http://techjournal.318.com/windows/apple-education-licensing-for-microsofts-active-directory/#comments</comments>
		<pubDate>Tue, 25 Oct 2011 17:27:29 +0000</pubDate>
		<dc:creator>Charles Edge</dc:creator>
				<category><![CDATA[Directory Services]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[Active Directory]]></category>
		<category><![CDATA[CAL]]></category>
		<category><![CDATA[do Macs need AD CALs]]></category>
		<category><![CDATA[Licensing]]></category>
		<category><![CDATA[Linux]]></category>
		<category><![CDATA[Mac Clients in AD CALs]]></category>
		<category><![CDATA[Mac OS X clients]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[MS]]></category>
		<category><![CDATA[RHEL]]></category>
		<category><![CDATA[Ubuntu]]></category>

		<guid isPermaLink="false">http://techjournal.318.com/?p=830</guid>
		<description><![CDATA[We have recently had a number of requests for licensing for Active Directory environments running Apple and Linux client computers. There seems to be a bit of a debate about whether or not you need one CAL (Client Access License) for each user or device in the environment, if the devices are Apple or Linux [...]]]></description>
			<content:encoded><![CDATA[<p>We have recently had a number of requests for licensing for Active Directory environments running Apple and Linux client computers. There seems to be a bit of a debate about whether or not you need one CAL (Client Access License) for each user or device in the environment, if the devices are Apple or Linux computers. The cause for the confusion seems to be Microsoft&#8217;s External licensing. External licensing only applies to computers that are not part of your network, but instead are outside of the network (e.g. coming in over a WAN). It can be frustrating because I&#8217;ve had multiple customers tell me that different resellers and even Microsoft sales reps will give them different answers, and that&#8217;s been going on for years. I&#8217;ve spent a good amount of time with the Microsoft licensing desks, our Partner reps and a number of others to figure out the correct answer.</p>
<p>Licensing CALs for onsite systems can be done in a couple different ways:</p>
<ul>
<li>Per-Device: Each computer that is bound to Active Directory receives a CAL</li>
<li>Per-User: Each user that uses a computer that is bound to Active Directory receives a CAL</li>
</ul>
<p>In an environment where there are many users per device, then per-device licensing is always going to be cheaper (unless of course there are more devices than users, which wouldn&#8217;t make sense in a many to one environment). In a one-to-one environment where users come and go (e.g. by transferring between schools), but the number of computers remains somewhat static, per-device licensing still works out better as it simplifies license allocation.</p>
<p>Per-User CALs for education environments typically run around $1 USD per CAL for students. Per-User CALs for educators that work in the environment and are bound in that same environment typically run around $8 USD per CAL. If the systems aren&#8217;t bound, then licensing is only based on users that access file and print services, or other services; however, this becomes a bit of a challenge to calculate unless you reactively look at triggers that can be generated. But because most environments now use Active Directory binding on client systems, the CALs end up becoming one-to-one about as quickly as the computers become one-to-one.</p>
<p><img class="aligncenter size-medium wp-image-831" title="MSNew2_8" src="http://techjournal.318.com/wp-content/uploads/2011/10/MSNew2_8-300x200.jpg" alt="" width="300" height="200" /></p>
<p>But you should most definitely not take this article as being the rules set in stone. There are a number of scenarios that can change the licensing situation (most of them have to do with not binding clients or running computers that are offsite and/or employee owned). <a href="http://www.microsoft.com/licensing/contact-us.aspx">Contact Microsoft&#8217;s licensing desk using the contact information here</a>, or contact a reseller like 318 for more more information.</p>
<p>Will the future require CALs? In an increasingly iOS and Android world, there are a few issues to sort out in many environments (e.g. IIS vs. AD licensing). This has so far ended up being in a case-by-case basis. 318 is a Microsoft reseller and can help you through these complex licensing issues, if you need it. Please feel free to contact your 318 Professional Services Manager, or sales@318.com if you would like more information.</p>
]]></content:encoded>
			<wfw:commentRss>http://techjournal.318.com/windows/apple-education-licensing-for-microsofts-active-directory/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Deploying Font Servers</title>
		<link>http://techjournal.318.com/mass-deployments/deploying-font-servers/</link>
		<comments>http://techjournal.318.com/mass-deployments/deploying-font-servers/#comments</comments>
		<pubDate>Sat, 22 Oct 2011 00:35:49 +0000</pubDate>
		<dc:creator>Charles Edge</dc:creator>
				<category><![CDATA[Directory Services]]></category>
		<category><![CDATA[Editorial]]></category>
		<category><![CDATA[IT Management]]></category>
		<category><![CDATA[Mac OS X]]></category>
		<category><![CDATA[Mac OS X Server]]></category>
		<category><![CDATA[Mass Deployments]]></category>
		<category><![CDATA[Web Development]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[font server]]></category>
		<category><![CDATA[fonts]]></category>
		<category><![CDATA[Universal Type Server]]></category>

		<guid isPermaLink="false">http://techjournal.318.com/?p=817</guid>
		<description><![CDATA[Mac OS X has come with the ability to activate and deactivate Fonts on the fly since 10.5, when Font Book was introduced. Font Book allows a single user to manage their fonts easily. But many will find that managing fonts on a per-computer basis ends up not being enough. Which begs the question: who [...]]]></description>
			<content:encoded><![CDATA[<p>Mac OS X has come with the ability to activate and deactivate Fonts on the fly since 10.5, when Font Book was introduced. Font Book allows a single user to manage their fonts easily. But many will find that managing fonts on a per-computer basis ends up not being enough. Which begs the question: who needs a font server? A very simplistic answer is any organization with more than 5 users working in a collaborative environment. This could be the creative print shops, editorial, motion graphics, advertising agencies and other creative environments. But corporate environments where font licensing and compliance is important are also great candidates.</p>
<p>Lack of font management is a cost center for many organizations. There is a loss of productivity every time a user has to manually add fonts when opening co-workers documents, or the cost of a job going out with the wrong version of a font. Some of the other benefits of fonts servers are separate font sets for different workgroups and isolating corrupt fonts to clean up large font libraries, along with quick searching and identification of fonts.</p>
<p><strong>Font Management and Best Practices</strong></p>
<p>Anyone who uses fonts for daily workflow needs font management. This could be a standalone product such as Suitcase Fusion or Font Agent Pro. But larger environments invariably need to collaborate and share fonts between users, meaning many environments need font servers. Two such products include Extensis Universal Type Server and Font Agent Pro Server. But before adding font management products, users should clean up and any fonts loaded or installed and added prior to moving to a managed font environment. Places to look for fonts when cleaning them up include the following:</p>
<ul>
<li>~/Library/Fonts</li>
<li>/Library/Fonts</li>
<li>/System/Library Fonts</li>
</ul>
<p>Leaving any necessary system, Microsoft Web Core, and required Adobe fonts.</p>
<p>The best resource for this process can be found at Extensis Font Best Practices in OX v.7, which can be found at: <a href="http://www.extensis.com/en/downloads/document_download.jsp?docId=5600039">http://www.extensis.com/en/downloads/document_download.jsp?docId=5600039</a></p>
<p><strong>Types of Font Server Products Available</strong></p>
<p>There are two major font server publishers: Extensis and Font Agent Pro. Both have workgroup and enterprise products. All server products from both products work on a client/server model. Both can sync entire font sets or serve fonts on-demand. The break down for the Extensis Universal Type Sever is at 10 clients. Below 10 clients Universal Type Server Lite is a 10 clients product, which lacks Enterprise features, such as the ability to use a SQL database or integrate in Open Directory or Active Directory. The full Universal Type Server Professional adds Directory integration, external database use, and font compliance features and is sold as 10-user license, with an additional per seat license.</p>
<p>Insider Software offers two levels of font servers. The first is FontAgent Pro Team Server designed for small workgroups and sold in a 5 or 10 client configuration. The next level of product is Font Agent Pro Enterprise server. This adds the same directory services integration as Universal Type Server Professional. This product also has Kerberos single sign on, server replication and fail over. It uses the same per-seat pricing structure as Universal Type Server Professional.</p>
<p>A third tool is also available in Monotype Font Explorer, at http://www.fontexplorerx.com, which we will look at later in this article.</p>
<p><strong>Pre-Deployment Strategies and Projects</strong></p>
<p>Before any font server deployment, there are a few things to take into consideration. First is number of clients. This will guide you to which product will be appropriate for installation. Also note if Directory integration and compliance is needed. Is failover or a robust database important. The most important part of any font server installation is the fonts. How may are there, where are they coming from, are separate workgroups needed? Are all your fonts legal? In my experience probably not. Is legal compliance required for you organization or your clients? What is the preferred font type, PostScript Type 1, Open Type? What version are the fonts? Most fonts have been “acquired” over time, with some Postscript fonts dating back to early to mid nineties. As a font server is just a database, the axiom “garbage in, garbage out” is true here as well. This should lead to a pre-deployment font library consolidation and clean up. This can be either be done by 318 or we can train the you to perform this task. If compliance is an issue this is where we would weed out unlicensed fonts. Which to my experience is about 90% of all fonts. A clean, organized font set is the most important part of pre-deployment.</p>
<p>A major part of any font server roll out should be compliance and licensing. This allows for the tracking and reporting of font licenses and to make sure that stays in licensing and compliance.</p>
<p><a href="http://techjournal.318.com/wp-content/uploads/2011/10/UTS.png"><img class="aligncenter size-medium wp-image-820" title="UTS" src="http://techjournal.318.com/wp-content/uploads/2011/10/UTS-300x189.png" alt="" width="300" height="189" /></a></p>
<p><strong>Extensis</strong></p>
<p>Universal Type Server includes the ability to generate and export reports to help you determine if you are complying with your font licenses. The font compliance feature only allows you to track your licensing compliance and does not restrict access to noncompliant fonts. To help you understand how the font licensing compliance, let’s look at the following typical example of how to use licenses and the font compliance report in your environment.</p>
<p>Say you are starting up your own design shop and need a good group of licensed fonts for your designers to create projects that will bring you fame and fortune. You know that fonts are valuable, and you want to be sure that you have purchased enough licenses for your requirements. So, you purchase a 10­user license of a sizable font library. Using the Universal Type Client, these fonts are added to a Type Server workgroup as a set. A font license is then created and the Number of Seats field is set to 10. This license is then applied to all fonts in the set.</p>
<p>When you run the font compliance report, Universal Type Server compares the number of seats allowed to the total number of unique users who have access to the workgroup. If more users have access than licenses available, the fonts are listed as “non-­compliant.” You can now either remove users from the workgroup or purchase more font licenses to become compliant.</p>
<p>Universal Type Server is unique amongst other products in that it uses a checksum process to catalog fonts. Others just use file names and paths.</p>
<p><img class="aligncenter size-medium wp-image-822" title="Untitled" src="http://techjournal.318.com/wp-content/uploads/2011/10/Untitled-300x254.png" alt="" width="300" height="254" /></p>
<div id="_mcePaste">Universal Type Server can limit users to be able to only download fonts installed by administrators. For initial deployment, each user does not need to download all of the fonts, which helps in environments when you have a lot of fonts (e.g. more than 5 GB of fonts) that need to get distributed to several hundreds clients, so if each user had to download all of the fonts (e.g. each time they get imaged), they could loose a production system for some time.</div>
<p><strong>Universal Type Server Deployment</strong></p>
<p>Universal Type Server system requirements include the following:</p>
<p>Macintosh Server</p>
<p>•          Mac OS X v 10.5.7, 10.6 Mac OS X Server 10.5 or 10.6•          1.6 GHz or faster 32-bit (x86) or 64-bit (x64) processor (PowerPC is not supported)<br />
•          1 GB available RAM<br />
•          250 MB of hard disk space + space for fonts<br />
•          Safari 3.0 or Firefox 3.0 or higher*<br />
•          Adobe Flash Player 10 or higher*</p>
<p>Windows Server</p>
<p>•          Windows XP SP3 (32-bit only), Server 2003 SP2, Server 2008 SP2 (32 or 64-bit version**)<br />
•          P4 or faster processor***<br />
•          1 GB available RAM<br />
•          250 MB of hard disk space + space for fonts<br />
•          Internet Explorer 7 or Firefox 3.0 or higher*<br />
•          Adobe Flash Player 10 or higher*<br />
•          Adobe Reader 7 to read PDF documentation*<br />
•          Microsoft .NET 3.5 or higher</p>
<p>Universal Type Server Installation Process:</p>
<p>1.         Verify server system requirements<br />
2.         Run the installer on the target server machine<br />
3.         Login to the Server Administration web interface<br />
4.         Serialize the server<br />
5.         Set the Bonjour Name<br />
6.         Resolve any port conflicts<br />
7.         Set any desired server configuration options, including backup schedule, log file configuration, secure connection options, and any other necessary server settings.<br />
8.         After installing the server, configure workgroups, roles and add users.</p>
<p>The basic user and workgroup configuration steps include:</p>
<p>1.   Plan your configuration<br />
2.   Create workgroups<br />
3.   Create new users<br />
4.   Add users to workgroups<br />
5.   Assign workgroup roles to users<br />
6.   Modify user settings as required</p>
<p><a href="http://techjournal.318.com/wp-content/uploads/2011/10/2.png"><img class="aligncenter size-medium wp-image-823" title="2" src="http://techjournal.318.com/wp-content/uploads/2011/10/2-300x230.png" alt="" width="300" height="230" /></a></p>
<p>Optional Setup:</p>
<ol>
<li>Managing System Fonts with System Font Policy The System Font Policy feature allows Universal Type Server administrators to create a list of system fonts that are allowed in a user’s system font folder.</li>
<li>Font Compliance Reporting<br />
The font compliance feature only allows you to track your licensing<br />
compliance and does not restrict access to noncompliant fonts.</li>
<li>Directory Integration<br />
Directory integration allows network administrators to automatically<br />
synchronize users from an LDAP service<br />
(Active Directory on Windows or Open Directory on Mac OS X) with Universal Type Server workgroups.</li>
</ol>
<p><a href="http://techjournal.318.com/wp-content/uploads/2011/10/3.png"><img class="aligncenter size-medium wp-image-824" title="3" src="http://techjournal.318.com/wp-content/uploads/2011/10/3-300x230.png" alt="" width="300" height="230" /></a></p>
<blockquote><p>* UTS Documentation:</p>
<p><a href="http://tinyurl.com/4xgn9rr">http://tinyurl.com/4xgn9rr</a></p></blockquote>
<p>Both Universal Type Server Professional and Font Agent Pro Enterprise can be configured for Open Directory, Active Directory, and LDAP integration. Both also can utilize Kerberos Single User sign on. Universal Type Sever Professional directory integration instructions can be found in the UTS 2 Users and Workgroups Administration Guide at <a href="http://tinyurl.com/4xgn9rr">http://tinyurl.com/4xgn9rr</a>. Some users have reported issues connecting to Open Directory (which happens with all products, not just this one).</p>
<p>Universal Type Server runs in Flash for administrative functions, which many do not like.</p>
<p><strong>Monotype Font Explorer</strong></p>
<p>Monotype Font Explorer is a third tool that can be used to manage fonts. Available at http://www.fontexplorerx.com there are some things that some environments do not like about Universal Type Server or Font Agent Pro. Let&#8217;s face it, the reason there are multiple products and multiple workflows is that some work for some environments and others work for other environments/workflows better. For example, Font Agent Pro stores master fonts on one client machine, which is then synchronized to the server, and from there to the rest of the clients; not everyone wants a client system acting as a master to the server. Font Explorer keeps the master is on the server, groups and synchronization works well and the administration is in the same window as font management. And best of all, Font Explorer is also typically cheaper than its server-based competitors in the font management space.</p>
<p>Extensis publishes a guide as to which fonts to include in the system and which to handle in the font management software. According to Apple documentation, and fonts in my ~/Library/Fonts folder take precedence to fonts in /Library/Fonts, which again takes precedence to /System/Library/Fonts. That means that if I install Times in my ~/Library/Fonts folder, it will be used instead of the font with the same name in /Library/Fonts or in /System/Library/Fonts. So how is it that I should care which fonts is installed where, as the font management applocation should simple take precedence to the others? If it does not take precedence, then where in the chain is it actually activating fonts? Maybe fonts are handled in these solution in parallel with the system mechanism? Thats the only explanation I can find to that, but is then only valid for UTS, or is it also valid for the other solutions?</p>
<p><strong>End User Training and Font Czar</strong></p>
<p>No font server installation would be complete without end user training and the appointment of a Font Czar. User training can be a fairly easy endeavor if client systems are using the same publishers stand-alone font client. Other times it could entail discussing licensing and compliance concepts along with adding metadata to fonts. An onsite Font Czar (or more than one) is very important to font server installations. The Font Czar cleans up and ingests new fonts, adds new users to font server, and in general be the Font Admin. This is usually a senior designer or technical point of contact for the creative environment.</p>
<p><strong>Conclusion</strong></p>
<p>Font Book is adequate for most users that don&#8217;t need a server. Universal Type Server, Font Agent Pro and FontExplorer are all great products if you need a font server. They all are installed centrally and allow end users to administer fonts, based on the server configuration and group memberships. They all work with directory services (some better than others) and can be mass deployed. In big workgroups or enterprises, where only a few people are handling the administration of fonts for a lot of people, a centralized font management solution is a must. But in much smaller organizations, it requires care and feeding, which represents a soft cost that often rivals a cost to purchase the solution.</p>
<p>Finally, test all of the tools available. Each exists for a reason. Find the one that works with the workflow of your environment before purchasing and installing anything.</p>
<p><em>Note: Thanks to Søren Theilgaard of Humac for some of the FontExplorer text!</em></p>
]]></content:encoded>
			<wfw:commentRss>http://techjournal.318.com/mass-deployments/deploying-font-servers/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Making snort a Service in Server 2008</title>
		<link>http://techjournal.318.com/security/making-snort-a-service-in-server-2008/</link>
		<comments>http://techjournal.318.com/security/making-snort-a-service-in-server-2008/#comments</comments>
		<pubDate>Tue, 26 Apr 2011 18:50:38 +0000</pubDate>
		<dc:creator>Charles Edge</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[configure]]></category>
		<category><![CDATA[Howto]]></category>
		<category><![CDATA[sc]]></category>
		<category><![CDATA[service]]></category>
		<category><![CDATA[setup]]></category>
		<category><![CDATA[snort]]></category>
		<category><![CDATA[snort.exe]]></category>
		<category><![CDATA[windows server 2008]]></category>

		<guid isPermaLink="false">http://techjournal.318.com/?p=739</guid>
		<description><![CDATA[Note: For more information about the information contained in this article, contact us for a professional consultation. Installing Snort in Windows Server 2008 is a fairly straight forward maneuver. Simply install winpcap, then barnyard and then snort itself. You&#8217;ll also want to install the snort rules available on the snort downloads page. Once snort is [...]]]></description>
			<content:encoded><![CDATA[<p><strong>Note</strong>: For more information about the information contained in this article, <a href="http://www.318.com/contact/">contact us for a professional consultation</a>.</p>
<p>Installing Snort in Windows Server 2008 is a fairly straight forward maneuver. Simply install <a href="http://www.winpcap.org/">winpcap</a>, then <a href="http://www.winsnort.com/index.php?module=Downloads&amp;func=sublevel&amp;cid=5&amp;start=0">barnyard</a> and then <a href="http://www.snort.org/snort-downloads?">snort</a> itself. You&#8217;ll also want to install the snort rules available on the snort downloads page.<br />
<a href="http://techjournal.318.com/wp-content/uploads/2011/04/snort_large.gif"><img class="aligncenter size-medium wp-image-741" title="snort" src="http://techjournal.318.com/wp-content/uploads/2011/04/snort_large-300x166.gif" alt="" width="300" height="166" /></a><br />
Once snort is installed, it&#8217;s fairly simple to run it from the Windows Server 2008 command line. To do so, use the snort.exe that was distributed in the installer (by default it would be at c:\snort\bin\snort.exe). You can then run it in a simple form to check that the interfaces are available:</p>
<p><code>c:\snort\bin\snort.exe -W<br />
</code><br />
And then use one of the listed interfaces, invoke it with a -i option followed by the interface. You can also specify a custom logging location using -l and a custom configuration file using -c. This would result in something similar to the following:</p>
<p><code>c:\snort\bin\snort.exe -i 1 -l c:\snort\log -c c:\snort\etc\snort.conf<br />
</code><br />
There are a lot more options, but this article is about converting it into a service. Once you&#8217;ve found a configuration that works for you manually, you can then take that, throw a /SERVICE /INSTALL after the snort.exe but before the operators and viola you&#8217;ve converted snort into a service:</p>
<p><code>c:\snort\bin\snort.exe /SERVICE /INSTALL -i 1 -l c:\snort\log -c c:\snort\etc\snort.conf<br />
</code><br />
Once snort has become a service, many will want to have it start automatically. This is possible using the sc command to configure the snortsvc to start automatically:</p>
<p><code>sc config snortsvc start= auto<br />
</code><br />
And then, start her up:</p>
<p><code>sc start snortsvc<br />
</code><br />
Intrusion Detection (IDS) and Prevention (IPS) solutions can be invaluable to an organization. If you would like to discuss running snort or any other IDS or IPS, please feel free to contact your 318 Professional Services Manager, or sales@318.com if you do not yet have one!</p>
]]></content:encoded>
			<wfw:commentRss>http://techjournal.318.com/security/making-snort-a-service-in-server-2008/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Bad McAfee Update</title>
		<link>http://techjournal.318.com/security/bad-mcafee-update/</link>
		<comments>http://techjournal.318.com/security/bad-mcafee-update/#comments</comments>
		<pubDate>Thu, 22 Apr 2010 14:13:40 +0000</pubDate>
		<dc:creator>Charles Edge</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Windows]]></category>

		<guid isPermaLink="false">http://techjournal.318.com/?p=523</guid>
		<description><![CDATA[Please be aware that there is a bad McAfee Antivirus update that will wrongly quarantine the SVCHOST files on Windows XP.  McAfee is aware of the issue and has pulled the bad update file.  Below is a fix in case you run into a case where the machine has already applied the update: http://vil.nai.com/vil/5958_false.htm]]></description>
			<content:encoded><![CDATA[<p>Please be aware that there is a bad McAfee Antivirus update that will wrongly quarantine the SVCHOST files on Windows XP.  McAfee is aware of the issue and has pulled the bad update file.  Below is a fix in case you run into a case where the machine has already applied the update:</p>
<p><a href="http://vil.nai.com/vil/5958_false.htm">http://vil.nai.com/vil/5958_false.htm</a></p>
]]></content:encoded>
			<wfw:commentRss>http://techjournal.318.com/security/bad-mcafee-update/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Preparing for Exchange 2007</title>
		<link>http://techjournal.318.com/windows/preparing-for-exchange-2007/</link>
		<comments>http://techjournal.318.com/windows/preparing-for-exchange-2007/#comments</comments>
		<pubDate>Wed, 27 Jan 2010 18:05:48 +0000</pubDate>
		<dc:creator>Charles Edge</dc:creator>
				<category><![CDATA[Windows]]></category>

		<guid isPermaLink="false">http://www.318.com/techjournal/?p=458</guid>
		<description><![CDATA[Make sure you have a fully updated Windows 2008 64bit install setup for the following commands to work. Note that Windows 2008 R2 will NOT work with Exchange 2007. Exchange 2007 has a lot of prerequisites that need to be installed before you can install Exchange 2007. Instead of going through a bunch of Wizards [...]]]></description>
			<content:encoded><![CDATA[<p>Make sure you have a fully updated Windows 2008 64bit install setup for the following commands to work.  Note that Windows 2008 R2 will NOT work with Exchange 2007.</p>
<p>Exchange 2007 has a lot of prerequisites that need to be installed before you can install Exchange 2007.  Instead of going through a bunch of Wizards and using trial and error to make sure you have everything installed, you can set them up using a command line.</p>
<p>The first command that should be run is:</p>
<blockquote><p>ServerManagerCmd -i PowerShell</p>
<p><a href="http://www.318.com/techjournal/wp-content/uploads/2010/01/PowerShell1.png"><img class="aligncenter size-medium wp-image-460" title="PowerShell1" src="http://www.318.com/techjournal/wp-content/uploads/2010/01/PowerShell1-300x147.png" alt="" width="300" height="147" /></a></p></blockquote>
<p>This will install and configure everything that Exchange 2007 needs for PowerShell.</p>
<p>IIS has several components that need to be installed to use Exchange 2007.  You can create a quick batch script that includes them all.  The following commands need to be run:</p>
<blockquote><p>ServerManagerCmd -i Web-Server<br />
ServerManagerCmd -i Web-ISAPI-Ext<br />
ServerManagerCmd -i Web-Metabase<br />
ServerManagerCmd -i Web-Lgcy-Mgmt-Console<br />
ServerManagerCmd -i Web-Basic-Auth<br />
ServerManagerCmd -i Web-Digest-Auth<br />
ServerManagerCmd -i Web-Windows-Auth<br />
ServerManagerCmd -i Web-Dyn-Compression</p>
<p><a href="http://www.318.com/techjournal/wp-content/uploads/2010/01/PowerShell2.png"><img class="aligncenter size-medium wp-image-461" title="PowerShell2" src="http://www.318.com/techjournal/wp-content/uploads/2010/01/PowerShell2-300x146.png" alt="" width="300" height="146" /></a></p></blockquote>
<p>If you plan on using RPC over HTTP (Outlook Anywhere) you will need to run this command after all of the IIS commands have finished:</p>
<blockquote><p>ServerManagerCmd -i RPC-over-HTTP-proxy</p></blockquote>
<p>After running these commands you should be ready to run the actual setup files.  When you run setup.exe you should see that everything before option 4. Is greyed out.  Option 4. is what triggers the install.  If anything has not finished look through the command lines to make sure no errors have shown up.</p>
]]></content:encoded>
			<wfw:commentRss>http://techjournal.318.com/windows/preparing-for-exchange-2007/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Google Apps Connector for BlackBerry</title>
		<link>http://techjournal.318.com/web-development/google-apps-connector-for-blackberry/</link>
		<comments>http://techjournal.318.com/web-development/google-apps-connector-for-blackberry/#comments</comments>
		<pubDate>Wed, 02 Dec 2009 16:01:23 +0000</pubDate>
		<dc:creator>Charles Edge</dc:creator>
				<category><![CDATA[Kerio]]></category>
		<category><![CDATA[Web Development]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[BlackBerry Enterprise Server]]></category>
		<category><![CDATA[Google Apps Connector for BlackBerry]]></category>
		<category><![CDATA[Mac OS X]]></category>
		<category><![CDATA[Windows Server]]></category>

		<guid isPermaLink="false">http://www.318.com/techjournal/?p=423</guid>
		<description><![CDATA[Using the Google Apps Connector for BlackBerry means that your Blackberry users can keep using the mobile platform that they love, with Google Apps. The Google Apps Connector allows users to access mail, calendar and contacts using the built-in applications for doing so rather than needing a 3rd party application. The Google Apps Connector plugs [...]]]></description>
			<content:encoded><![CDATA[<p>Using the Google Apps Connector for BlackBerry means that your Blackberry users can keep using the mobile platform that they love, with Google Apps. The Google Apps Connector allows users to access mail, calendar and contacts using the built-in applications for doing so rather than needing a 3rd party application. The Google Apps Connector plugs into BlackBerry Enterprise Server and connects from your organization to Google, handing off the traffic destined to handhelds through Research In Motion in much the same way that Blackberry Enterprise Server for Exchange works.</p>
<p>The 1.5 version of the Google Apps connector for Blackberry <a href="http://googleappsupdates.blogspot.com/2009/11/new-version-of-google-apps-connector.html">has now been released</a>. This update brings maturity, additional capacity and overall performance enhancements. But most importantly, it can be run on 64-bit operating systems. You can also now use BlackBerry Professional with the Google Apps Connector for BlackBerry Enterprise Server.</p>
<p>If your organization is considering a move to Google Apps, contact 318 now and we can help to plan the transition; whether from Exchange or Lotus Notes or even good &#8216;ole postfix, 318 is here to help!</p>
]]></content:encoded>
			<wfw:commentRss>http://techjournal.318.com/web-development/google-apps-connector-for-blackberry/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Mail Archival</title>
		<link>http://techjournal.318.com/mac-os-x-server/mail-archival/</link>
		<comments>http://techjournal.318.com/mac-os-x-server/mail-archival/#comments</comments>
		<pubDate>Sat, 07 Nov 2009 19:39:50 +0000</pubDate>
		<dc:creator>Charles Edge</dc:creator>
				<category><![CDATA[Mac OS X Server]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[Exchange 2003]]></category>
		<category><![CDATA[Exchange 2007]]></category>
		<category><![CDATA[Mail Archival]]></category>
		<category><![CDATA[Sarbanes-Oxley]]></category>
		<category><![CDATA[Zimbra]]></category>

		<guid isPermaLink="false">http://www.318.com/techjournal/?p=399</guid>
		<description><![CDATA[There are a number of messaging solutions that allow for automated message archiving. Message archiving can save space, while freeing up valuable resources and can also help to maintain Sarbanes-Oxley compliance (as well as achieve a number of other objectives). But not all messaging solutions allow for automated archival. Enter Mail Archiva into the picture. [...]]]></description>
			<content:encoded><![CDATA[<p>There are a number of messaging solutions that allow for automated message archiving. Message archiving can save space, while freeing up valuable resources and can also help to maintain Sarbanes-Oxley compliance (as well as achieve a number of other objectives). But not all messaging solutions allow for automated archival. Enter <a href="http://www.mailarchiva.com">Mail Archiva</a> into the picture.</p>
<p><img class="alignleft" title="http://www.mailarchiva.com/images/new_architecture.gif" src="http://www.mailarchiva.com/images/new_architecture.gif" alt="" width="296" height="303" /></p>
<p>Mail Archiva is an open source project aimed at bringing messaging archival to Microsoft Exchange, Zimbra, Mac OS X Server, Postfix, SendMail, IpSwitch, Axigen and a number of other messaging servers.</p>
<p>If you are in need of mail archival then feel free to reach out to us for more information on Mail Archiva today!</p>
]]></content:encoded>
			<wfw:commentRss>http://techjournal.318.com/mac-os-x-server/mail-archival/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>NetBook Upgrades for Windows 7</title>
		<link>http://techjournal.318.com/windows/netbook-upgrades-for-windows-7/</link>
		<comments>http://techjournal.318.com/windows/netbook-upgrades-for-windows-7/#comments</comments>
		<pubDate>Mon, 26 Oct 2009 19:12:38 +0000</pubDate>
		<dc:creator>Charles Edge</dc:creator>
				<category><![CDATA[Windows]]></category>
		<category><![CDATA[netbook]]></category>
		<category><![CDATA[usb]]></category>
		<category><![CDATA[windows 7]]></category>

		<guid isPermaLink="false">http://www.318.com/techjournal/?p=385</guid>
		<description><![CDATA[Chances are that if you have a NetBook you don&#8217;t have a DVD drive. And chances are if that NetBook is running a previous version of Windows that you&#8217;re probably thinking about upgrading it to Windows 7. If you are using a NetBook with Vista then you might want to check out the new Windows [...]]]></description>
			<content:encoded><![CDATA[<p>Chances are that if you have a NetBook you don&#8217;t have a DVD drive. And chances are if that NetBook is running a previous version of Windows that you&#8217;re probably thinking about upgrading it to Windows 7. If you are using a NetBook with Vista then you might want to check out the new Windows 7 USB/DVD Download Tool. With the Download Tool you would use a 4GB USB drive to cache the installer files and install Windows 7. Therefore you wouldn&#8217;t need an optical drive! But you will need the .NET Framework 2.0 or later and to configure the BIOS to boot off the jump drive.</p>
<p>Happy upgrades and if you need any help, as always, feel free to call 318.</p>
]]></content:encoded>
			<wfw:commentRss>http://techjournal.318.com/windows/netbook-upgrades-for-windows-7/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Windows 7 Officially Available</title>
		<link>http://techjournal.318.com/windows/windows-7-officially-available/</link>
		<comments>http://techjournal.318.com/windows/windows-7-officially-available/#comments</comments>
		<pubDate>Thu, 22 Oct 2009 15:11:00 +0000</pubDate>
		<dc:creator>Charles Edge</dc:creator>
				<category><![CDATA[Windows]]></category>
		<category><![CDATA[windows 7]]></category>

		<guid isPermaLink="false">http://www.318.com/techjournal/?p=380</guid>
		<description><![CDATA[Windows 7 has been released officially released. You see the wacky people standing in line and you know that&#8217;s just wrong when you can get it on Microsoft.com as an immediate downloadhttp://store.microsoft.com/microsoft/Windows-Windows-7/category/102. All that time spent driving home could instead be spent running the installer and crossing your fingers that your hardware works! Well, if [...]]]></description>
			<content:encoded><![CDATA[<p>Windows 7 has been released officially released. You see the wacky people standing in line and you know that&#8217;s just wrong when you can get it on <a href="http://store.microsoft.com/microsoft/Windows-Windows-7/category/102">Microsoft.com as an immediate download</a>http://store.microsoft.com/microsoft/Windows-Windows-7/category/102. All that time spent driving home could instead be spent running the installer and crossing your fingers that your hardware works! Well, if you&#8217;re going from XP or Vista then you should be fine on that point&#8230;  Windows 3.1, maybe not so much&#8230;</p>
]]></content:encoded>
			<wfw:commentRss>http://techjournal.318.com/windows/windows-7-officially-available/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>The VPN</title>
		<link>http://techjournal.318.com/security/the-vpn/</link>
		<comments>http://techjournal.318.com/security/the-vpn/#comments</comments>
		<pubDate>Wed, 23 Sep 2009 20:22:07 +0000</pubDate>
		<dc:creator>Charles Edge</dc:creator>
				<category><![CDATA[Mac OS X]]></category>
		<category><![CDATA[Mac OS X Server]]></category>
		<category><![CDATA[Network Architecture]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[L2TP]]></category>
		<category><![CDATA[PPTP]]></category>
		<category><![CDATA[SSL]]></category>
		<category><![CDATA[VPN]]></category>

		<guid isPermaLink="false">http://www.318.com/techjournal/?p=356</guid>
		<description><![CDATA[Virtual Private Networks, abbreviated &#8220;VPN&#8221; is technology that that allows users to connect from one place to another securely.  What makes it secure is that the connection between point A and point B is encrypted.  An encrypted tunnel is built between Point A and Point B, and then data is passed through that tunnel. VPN&#8217;s come in many different [...]]]></description>
			<content:encoded><![CDATA[<p>Virtual Private Networks, abbreviated &#8220;VPN&#8221; is technology that that allows users to connect from one place to another securely.  What makes it secure is that the connection between point A and point B is encrypted.  An encrypted tunnel is built between Point A and Point B, and then data is passed through that tunnel.</p>
<p>VPN&#8217;s come in many different types (protocols).   Some of the most common include the following:</p>
<p><strong>PPTP </strong></p>
<p>Often called &#8220;dial up VPNs&#8221;, it technically extends the functionality of PPP. It was originally started by Microsoft, US Robotics, Ascend Communication, 3Com, and ECI Telematics.  Their first draft of their IETF document for the protocol extension was submitted in June, 1996.  The protocol extension is supported by Linux, Mac and Windows workstations.</p>
<p>Current versions of all three operating systems include the VPN Client application pre-installed in the operating system.  All three operating system server versions can also be setup to allow PPTP connections. A Microsoft Routing and Remote Access Server (RRAS) typically uses Microsoft Point to Point Encryption (MPPE) which is based on RSA RC4 and supports up to 128 bit encryption.</p>
<p><strong>IPSec </strong></p>
<p>IPSec is short for Internet Protocol Security.  It works on Layer 3, and is often called &#8220;Site to Site VPN&#8221;.  It is usually used to connect one LAN to another LAN, most times using two hardware VPN units at each side communicating with each other.  It can also be used to connect a workstation to the corporate LAN, typically using proprietary software from the VPN manufacturer/developer (although you can sometimes use the built in software in the operating system &#8211; as is the case with Windows). The protocol can function in two modes (Transport and Tunnel) and provides end to end security by authenticating and encrypting the packets between parties.  It can support up to 168bit encryption with 3DES.</p>
<p><strong>SSL VPN </strong></p>
<p>SSL VPN is a type of VPN that allows communication to happen over https via web browsers.  The main advantage of SSL VPN is that no additional client software is required besides a web browser.  Since no software needs to be installed on a computer, a user can access the corporate network via VPN from just about any computer (i.e, Public Computer, kiosk, etc.).   The disadvantage is that because it tends to make the applications you would normally use a web type of application, you often lose some of the intended user experience of those converted applications.</p>
<p><strong>L2TP </strong></p>
<p>L2TP is short for Layer 2 Tunneling Protocol.   It doesn&#8217;t do any encryption on it&#8217;s own, and is often used in conjunction with IPSec (L2TP/IPsec VPN). The biggest thing to remember about L2TP is that it allows more types of applications to communicate through the VPN connection that otherwise are not supported in a standard IPSec implementation.</p>
<p>In a nutshell, deciding which VPN protocol to implement depends on your budget, the hardware that you have, what will be connecting (workstation/user, or LAN to LAN) and the ease of use.  Please feel free to contact us, and we will be happy to help plan out your VPN infrastructure, or answer any questions that you may have.</p>
]]></content:encoded>
			<wfw:commentRss>http://techjournal.318.com/security/the-vpn/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>BRU Server 2.0 Now Available</title>
		<link>http://techjournal.318.com/xsan/bru-server-20-now-available/</link>
		<comments>http://techjournal.318.com/xsan/bru-server-20-now-available/#comments</comments>
		<pubDate>Sat, 25 Jul 2009 01:01:28 +0000</pubDate>
		<dc:creator>Charles Edge</dc:creator>
				<category><![CDATA[Linux]]></category>
		<category><![CDATA[Mac OS X]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[Xsan]]></category>
		<category><![CDATA[backup]]></category>
		<category><![CDATA[BRU]]></category>
		<category><![CDATA[BRU Server 2.0]]></category>
		<category><![CDATA[Mac]]></category>

		<guid isPermaLink="false">http://www.318.com/techjournal/?p=323</guid>
		<description><![CDATA[BRU Server 2.0 was released this week, offering a long anticipated update to the popular cross platform backup suite of applications. The main two features that the TOLIS group is highlighting include Encryption of backup target sets and client initiated backup. Whether you are a BRU, Atempo, Bakbone, Backup Exec or Retrospect environment, 318 can [...]]]></description>
			<content:encoded><![CDATA[<p>BRU Server 2.0 was released this week, offering <a href="http://www.tolisgroup.com/press/2009/07.22.html">a long anticipated update</a> to the popular cross platform backup suite of applications.  The main two features that the TOLIS group is highlighting include Encryption of backup target sets and client initiated backup.  </p>
<p>Whether you are a BRU, Atempo, Bakbone, Backup Exec or Retrospect environment, 318 can assist you with planning, testing, verifying or restoring backups.  Contact your 318 account manager today for more details.</p>
]]></content:encoded>
			<wfw:commentRss>http://techjournal.318.com/xsan/bru-server-20-now-available/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Add Copy To and Move To Contextual Menus in Windows 7</title>
		<link>http://techjournal.318.com/windows/add-copy-to-and-move-to-contextual-menus-in-windows-7/</link>
		<comments>http://techjournal.318.com/windows/add-copy-to-and-move-to-contextual-menus-in-windows-7/#comments</comments>
		<pubDate>Tue, 05 May 2009 12:37:20 +0000</pubDate>
		<dc:creator>Charles Edge</dc:creator>
				<category><![CDATA[Windows]]></category>
		<category><![CDATA[contextmenuhandlers]]></category>
		<category><![CDATA[contextual menu items]]></category>

		<guid isPermaLink="false">http://www.318.com/techjournal/?p=288</guid>
		<description><![CDATA[As with XP and Vista, Windows 7 doesn&#8217;t have the uber-useful (to us at least) Move To and Copy To options in the contextual menu&#8217;s by default. To create a Copy To menu item, go to the HKEY_CLASSES_ROOT\AllFilesystemObjects\shellex\ContextMenuHandlers location in the registry and create a new Default key with a name of Copy To and [...]]]></description>
			<content:encoded><![CDATA[<p>As with XP and Vista, Windows 7 doesn&#8217;t have the uber-useful (to us at least) Move To and Copy To options in the contextual menu&#8217;s by default.  To create a Copy To menu item, go to the HKEY_CLASSES_ROOT\AllFilesystemObjects\shellex\ContextMenuHandlers location in the registry and create a new Default key with a name of Copy To and a value of {C2FBB630-2971-11D1-A18C-00C04FD75D13}.  To create a Move To menu item, go to HKEY_CLASSES_ROOT\AllFilesystemObjects\shellex\ContextMenuHandlers (the same location) and add a new Default key with a name of Move To and a value of {C2FBB631-2971-11D1-A18C-00C04FD75D13}.  Now you should have the menu items.  Notice that the keys are only different in the 30 at the end of the first string of hex numbers&#8230;</p>
]]></content:encoded>
			<wfw:commentRss>http://techjournal.318.com/windows/add-copy-to-and-move-to-contextual-menus-in-windows-7/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Exchange 2010 Beta Now Available</title>
		<link>http://techjournal.318.com/windows/exchange-2010-beta-now-available/</link>
		<comments>http://techjournal.318.com/windows/exchange-2010-beta-now-available/#comments</comments>
		<pubDate>Wed, 22 Apr 2009 21:54:14 +0000</pubDate>
		<dc:creator>Charles Edge</dc:creator>
				<category><![CDATA[Windows]]></category>
		<category><![CDATA[Exchange 2010 Public Beta]]></category>

		<guid isPermaLink="false">http://www.318.com/techjournal/?p=273</guid>
		<description><![CDATA[Exchange 2010 has been announced &#8211; and should be available later this year!  The first public beta has some of the feature set and shows the direction Microsoft will be taking Exchange. Three things stand out about Exchange 2010: a continued to push into further integrated communications, client management and enterprise clustering. Additionally, Exchange 2010 [...]]]></description>
			<content:encoded><![CDATA[<p>Exchange 2010 has been announced &#8211; and should be available later this year!  The first public beta has some of the feature set and shows the direction Microsoft will be taking Exchange.  Three things stand out about Exchange 2010: a continued to push into further integrated communications, client management and enterprise clustering. Additionally, Exchange 2010 includes improvements to the database design, which should reduce overall disk I/O by up to 50% and allow the databases to be run on lower tier DAS storage (with a target at SATA, even in larger environments).  While a move to reduce errors in the database and make it less I/O dependent is a good start for compelling features, it does not speak to active-active clustering.  These new options are more similar to the <a href="http://www.318.com/techjournal/?p=262">LCR options</a> introduced in 2007, just with 16 replicas now being available &#8211; which allows for a lot of disaster recovery.</p>
<p>Exchange 2010 includes server-side email archival, which will be a big boon to many Mac environments (Entourage still doesn&#8217;t have an auto-archive feature).  Server-side email archiving also allows enterprise organizations to gain further control over archives and enforce better policy management for mailboxes.</p>
<p>Exchange 2010 allows users to manage many of their own common tasks rather than opening a service request.  Exchange will also warn users (and allow administrators to make policies based on these types of events) before they make common mistakes such as sending mail to large distribution groups, to recipients who are out of the office or to recipients outside the organization.  Overall, this move towards self-service should reduce overall support costs.</p>
<p>Text based voice mail preview, voice mail rules and further integrated Outlook Web Access (OWA) and Outlook Mobile dominate the theme of Exchange 2010.  Users of the Microsoft unified communications environment will be able to see text previews of voice mail using Outlook, delete voice mails out of Outlook without picking up a hand set and even create rules for dealing with certain types of messages (for example if a voice mail is less than 1 second it should probably just be deleted).  There are a number of other features, most of which (such as a message indicator light, caller ID and voice control over voice mail) are already present in other modern phone systems &#8211; the key word here is <em>other</em> as Microsoft now has what amounts to a phone system built into Exchange.</p>
<p>As always, many of the new features of Exchange will revolve around new features within the Office product line, which will also receive a refresh in 2010.  Public folders (not shared folders) will more than likely be moved into SharePoint, which will also see an update in 2010.  There will also be a number of upgraded Powershell commands that will further automate the use of Exchange with the upcoming Windows 7 operating system.</p>
<p>Overall, for many environments, Exchange 2010 should represent a lower Total Cost of Ownership (TCO) than previous releases.  However, it will need to be strategically planned well in advance, especially if your organization will be skipping Exchange 2007 and upgrading from 2003 into Exchange 2010.  If you need help with the strategy and assistance, please feel free to contact 318 and we will do whatever possible to aid in the planning of this transition.</p>
]]></content:encoded>
			<wfw:commentRss>http://techjournal.318.com/windows/exchange-2010-beta-now-available/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Using LCR for Exchange 2007 Disaster Recovery</title>
		<link>http://techjournal.318.com/network-architecture/using-lcr-for-exchange-2007-disaster-recovery/</link>
		<comments>http://techjournal.318.com/network-architecture/using-lcr-for-exchange-2007-disaster-recovery/#comments</comments>
		<pubDate>Thu, 16 Apr 2009 13:30:11 +0000</pubDate>
		<dc:creator>Charles Edge</dc:creator>
				<category><![CDATA[Kerio]]></category>
		<category><![CDATA[Network Architecture]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[Continuous Backup]]></category>
		<category><![CDATA[Exchange 2007]]></category>
		<category><![CDATA[LCR]]></category>
		<category><![CDATA[Storage Group]]></category>
		<category><![CDATA[Update-StorageGroupCopy]]></category>

		<guid isPermaLink="false">http://www.318.com/techjournal/?p=262</guid>
		<description><![CDATA[Local Continuous Replication (LCR) is a high availability feature built into Exchange Server 2007.  LCR allows admins to create and maintain a replica of a storage group to a SAN or DAS volume.  This can be anything from a NetApp to an inexpensive jump drive or even a removable sled. In Exchange 2007, log file sizes have been increased, [...]]]></description>
			<content:encoded><![CDATA[<p>Local Continuous Replication (LCR) is a high availability feature built into Exchange Server 2007.  LCR allows admins <span lang="EN">to create and maintain a replica of a storage group to a SAN or DAS volume.  This can be anything from a NetApp to an inexpensive jump drive or even a removable sled. In Exchange 2007, log file sizes have been increased, and those logs are copied to the LCR location (known as log shipping) and then used to &#8220;replay&#8221; data into the replica database (aka change propagation). </span></p>
<p>LCR can be used to reduce the recovery time in disaster recovery scenarios for the whole database, instead of restoring a database you can simply mount the replica.  However, this is not to be used for day-to-day mailbox recovery, message restores, etc.  It&#8217;s there to end those horrific eseutil /rebuild and eseutil /defrag scenarios.  Given the sizes that Exchange environments are able to get in Exchange 2003 R2 and Exchange 2007, this alone is worth the drive space used.</p>
<p>Like with many other things in Windows, LCR can be configured using a wizard.  The Local Continuous Backup wizard (I know, it should be the LCR wizard) can be accessed using the Exchange Management Console.  From here, browse to the storage group you would like to replicate and then click on the Enable Local Continuous Backup button.  The wizard will then ask you for the path to back up to and allow you to set a schedule.  Once done, the changes will replicate, but the initial copy will not.  This is known as seeding and will require a little PowerShell to get going.  Using the name of the Storage Group (in this example &#8220;First Storage Group&#8221;) you will stop LCR, manually update the seed, then start it again, commands respectively being:</p>
<blockquote><p>Suspend-StorageGroupCopy –identity “First Storage Group”</p>
<p>Update-StorageGroupCopy –identity “First StorageGroup”</p>
<p>Resume-StorageGroupCopy –identity “First StorageGroup”</p></blockquote>
<p>Now that your database is seeded, click on the Storage Group in the Exchange Management Console and you should see Healthy listed in the Copy Status column for the database you&#8217;re using LCR with.  Loop through this process with all of your databases and you&#8217;ll have a nice disaster recovery option to use next time you would have instead done a time consuming defrag of the database.</p>
]]></content:encoded>
			<wfw:commentRss>http://techjournal.318.com/network-architecture/using-lcr-for-exchange-2007-disaster-recovery/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>ESX Patch Management</title>
		<link>http://techjournal.318.com/scripts/esx-patch-management/</link>
		<comments>http://techjournal.318.com/scripts/esx-patch-management/#comments</comments>
		<pubDate>Tue, 14 Apr 2009 13:18:53 +0000</pubDate>
		<dc:creator>Charles Edge</dc:creator>
				<category><![CDATA[Linux]]></category>
		<category><![CDATA[Mass Deployments]]></category>
		<category><![CDATA[Scripts]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[esx]]></category>
		<category><![CDATA[esxcfg-firewall]]></category>
		<category><![CDATA[esxupdate]]></category>
		<category><![CDATA[noreboot]]></category>
		<category><![CDATA[patch management]]></category>
		<category><![CDATA[Test]]></category>
		<category><![CDATA[vmware]]></category>

		<guid isPermaLink="false">http://www.318.com/techjournal/?p=257</guid>
		<description><![CDATA[VMware&#8217;s ESX Server, like any system, needs to be updated regularly. To see what patches have been installed on your ESX server use the following command: esxupdate -query Once you know what updates have already been applied to your system it&#8217;s time to go find the updates that still need to be applied. You can [...]]]></description>
			<content:encoded><![CDATA[<p>VMware&#8217;s ESX Server, like any system, needs to be updated regularly.  To see what patches have been installed on your ESX server use the following command:</p>
<blockquote><p>esxupdate -query</p></blockquote>
<p>Once you know what updates have already been applied to your system it&#8217;s time to go find the updates that still need to be applied.  You can download the updates that have not yet been run at <a href="http://support.vmware.com/selfsupport/download/">http://support.vmware.com/selfsupport/download/</a>.  Here you will see a bevy of information about each patch and can determine whether you consider it an important patch to run.  At a minimum, all security patches should be run as often as your change control environment allows.  Once downloaded make sure you have enough free space to install the software you&#8217;ve just downloaded and then you will need to copy the patches to the server (using ssh, scp or whatever tool you prefer to use to copy files to your ESX host).  Now extract the patches prior to running them.  To do so use the tar command, as follows: </p>
<blockquote><p>tar xvzf <NAMEOFPATCH>.tgz</p></blockquote>
<p>Once extracted, cd into the patch directory and then use the esxupdate command with the update flag and then the test flag, as follows:</p>
<blockquote><p>esxupdate &#8211;test update </p></blockquote>
<p>Provided that the update tests clean, run the update itself with the following command (still with a working directory inside the extracted tarball from a couple of steps ago): </p>
<blockquote><p>esxupdate update</p></blockquote>
<p>There are a couple of flags that can be used with esxupdate.  Chief amongst them are -noreboot (which doesn&#8217;t reboot after a given update), -d, -b and -l (which are used for working with bundles and depots).</p>
<p>If esxupdate fails with an error code these can be cross referenced using the ESX Patch Management Guide. </p>
<p>You can also run patches without copying the updates to the server manually, although this will require you to know the URL of the patch.  To do so, first locate the patch number that you would like to run.  Then, open outgoing ports on the server as follows:</p>
<blockquote><p>esxcfg-firewall -allowOutgoing</p></blockquote>
<p>Next, issue the esxupdate command with the path embedded:</p>
<blockquote><p>esxupdate &#8211;noreboot -r http://
<path of update> update</p></blockquote>
<p>Once you&#8217;ve looped through all the updates you are looking to run, lock down your ESX firewall again using the following command:</p>
<blockquote><p>esxcfg-firewall -blockOutgoing</p></blockquote>
]]></content:encoded>
			<wfw:commentRss>http://techjournal.318.com/scripts/esx-patch-management/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Sleeping Windows from the Command Line</title>
		<link>http://techjournal.318.com/windows/sleeping-windows-from-the-command-line/</link>
		<comments>http://techjournal.318.com/windows/sleeping-windows-from-the-command-line/#comments</comments>
		<pubDate>Fri, 10 Apr 2009 16:26:23 +0000</pubDate>
		<dc:creator>Charles Edge</dc:creator>
				<category><![CDATA[Windows]]></category>
		<category><![CDATA[hibernate]]></category>
		<category><![CDATA[lockworkstation]]></category>
		<category><![CDATA[powrprof.dll]]></category>
		<category><![CDATA[rundll32]]></category>
		<category><![CDATA[setsuspendstate]]></category>
		<category><![CDATA[sleep from command line]]></category>
		<category><![CDATA[user32.dll]]></category>

		<guid isPermaLink="false">http://www.318.com/techjournal/?p=253</guid>
		<description><![CDATA[Windows, like Mac OS X can be put to sleep, locked or suspended from the command line. To suspend a host you would run the following command: rundll32 powrprof.dll,SetSuspendState To lock a Windows computer from the command line, use the following command: rundll user32.dll,LockWorkStation To put a machine in Hibernation mode: rundll32 powrprof.dll,SetSuspendState Hibernate If [...]]]></description>
			<content:encoded><![CDATA[<p>Windows, like Mac OS X can be put to sleep, locked or suspended from the command line.  To suspend a host you would run the following command:</p>
<blockquote><p>rundll32 powrprof.dll,SetSuspendState</p></blockquote>
<p>To lock a Windows computer from the command line, use the following command:</p>
<blockquote><p>rundll user32.dll,LockWorkStation</p></blockquote>
<p>To put a machine in Hibernation mode:</p>
<blockquote><p>rundll32 powrprof.dll,SetSuspendState Hibernate</p></blockquote>
<p>If you would rather simply shut the computer down, then there is also the shutdown command, which can be issued at the command line.  You can also use tsshutdn, which provides a few more options than the traditional shutdown command.  All of these commands can also be scripted.  For example, using the at command to provide a one time instance (which is actually a feature built into tsshutdn and shutdown).  Another way to automate these in WIndows would be to issue the schtasks command (or simply write a batch file and use the GUI).</p>
]]></content:encoded>
			<wfw:commentRss>http://techjournal.318.com/windows/sleeping-windows-from-the-command-line/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Conficker Redux</title>
		<link>http://techjournal.318.com/windows/conficker-redux/</link>
		<comments>http://techjournal.318.com/windows/conficker-redux/#comments</comments>
		<pubDate>Thu, 09 Apr 2009 16:49:26 +0000</pubDate>
		<dc:creator>Charles Edge</dc:creator>
				<category><![CDATA[Windows]]></category>
		<category><![CDATA[botnet]]></category>
		<category><![CDATA[conficker]]></category>
		<category><![CDATA[encrypted]]></category>
		<category><![CDATA[virus]]></category>

		<guid isPermaLink="false">http://www.318.com/techjournal/?p=251</guid>
		<description><![CDATA[Conficker Part II: we&#8217;re not trying to beat a dead horse here, nor be fear mongers; our goal is to be realistically managing risk. Conficker was set to go active on April 1st, but not a lot happened.  Infection estimates tended toward the millions, as high as 15.  That&#8217;s a sleeping bear that you likely [...]]]></description>
			<content:encoded><![CDATA[<p>Conficker Part II: we&#8217;re not trying to beat a dead horse here, nor be fear mongers; our goal is to be realistically managing risk. Conficker was set to go active on April 1st, but not a lot happened.  Infection estimates tended toward the millions, as high as 15.  That&#8217;s a sleeping bear that you likely don&#8217;t want to stir.  Now, as we are a bit more into April and the thaw is upon us, the hibernation appears to be over, even if the only result is a still sleepy bear, rubbing his eyes and with a big yawn, wondering out of its cave.  As though part of a bad April Fools prank, it appears as though Conficker is starting to stir, with reports from security researchers that it is just beginning to send out a payload to infected hosts that, while heavily encrypted, is reported to likely be logging keystrokes and <a href="http://news.cnet.com/8301-1009_3-10215678-83.html">designed to steal personal information.</a></p>
<p>Because Conficker is able to communicate with other infected hosts and download updates to itself (in the form of new payloads), it is able to morph into a new virus, able to do more damage to a system or be used for distributed attacks against larger environments.  Because Conficker disables anti-virus software and Automatic Updates from Windows, the best fix is to download and run a tool designed for the task.  You can download a <a href="http://www.sophos.com/products/free-tools/conficker-removal-tool.html">free removal tool at Sophos.com.</a></p>
]]></content:encoded>
			<wfw:commentRss>http://techjournal.318.com/windows/conficker-redux/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Conficker Scanners</title>
		<link>http://techjournal.318.com/security/conficker-scanners/</link>
		<comments>http://techjournal.318.com/security/conficker-scanners/#comments</comments>
		<pubDate>Mon, 30 Mar 2009 18:31:43 +0000</pubDate>
		<dc:creator>Charles Edge</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[conficker scanner]]></category>

		<guid isPermaLink="false">http://www.318.com/techjournal/?p=234</guid>
		<description><![CDATA[McAfee, Norton, AVG and Kaspersky have detection for Conficker built into their standard engines. However, we&#8217;ve been finding that in some cases the standard scanners do not see Conficker, given its polymorphous nature. For this reason, I would recommend trying the Conficker scanner that Tillman Werner and Felix Leder have released. This free tool, written [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://vil.nai.com/vil/averttools.aspx">McAfee</a>, Norton, AVG and Kaspersky have detection for <a href="http://www.sophos.com/support/knowledgebase/article/51416.html">Conficker</a> built into their standard engines.  However, we&#8217;ve been finding that in some cases the standard scanners do not see Conficker, given its polymorphous nature.  For this reason, I would recommend trying the <a href="http://iv.cs.uni-bonn.de/uploads/media/scs.zip">Conficker scanner</a> that Tillman Werner and Felix Leder have released.  This free tool, written in python, can be used to scan a list of IP addresses (can be kept in a flat file called iplist.txt).  It&#8217;s fairly simple and straight forward and can be used to run through and scan all the systems on your network as an additional fail safe.  Remember, the countdown to what could be the biggest April Fools joke ever (if it doesn&#8217;t do anything that is, which seems pretty likely) is ticking. </p>
]]></content:encoded>
			<wfw:commentRss>http://techjournal.318.com/security/conficker-scanners/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>File Replication Pro Story About 318</title>
		<link>http://techjournal.318.com/general-technology/file-replication-pro-story-about-318/</link>
		<comments>http://techjournal.318.com/general-technology/file-replication-pro-story-about-318/#comments</comments>
		<pubDate>Wed, 25 Mar 2009 22:12:20 +0000</pubDate>
		<dc:creator>Charles Edge</dc:creator>
				<category><![CDATA[General Technology]]></category>
		<category><![CDATA[Linux]]></category>
		<category><![CDATA[Mac OS X]]></category>
		<category><![CDATA[Mac OS X Server]]></category>
		<category><![CDATA[Network Architecture]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[File Replication pro]]></category>
		<category><![CDATA[FRP]]></category>

		<guid isPermaLink="false">http://www.318.com/techjournal/?p=232</guid>
		<description><![CDATA[The File Replication Pro folks have published a customer success story outlining some of the ways we&#8217;re using their product. Check it out and if you have any questions about what we&#8217;re doing with it feel free to drop us a line!]]></description>
			<content:encoded><![CDATA[<p>The File Replication Pro folks <a href="http://www.filereplicationpro.com/customer-success-318-inc.cfm">have published a customer success story outlining some of the ways we&#8217;re using their product</a>.  Check it out and if you have any questions about what we&#8217;re doing with it feel free to drop us a line!</p>
]]></content:encoded>
			<wfw:commentRss>http://techjournal.318.com/general-technology/file-replication-pro-story-about-318/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Windows XP: No longer being sold after June</title>
		<link>http://techjournal.318.com/general-technology/windows-xp-no-longer-being-sold-after-june/</link>
		<comments>http://techjournal.318.com/general-technology/windows-xp-no-longer-being-sold-after-june/#comments</comments>
		<pubDate>Tue, 15 Apr 2008 21:00:02 +0000</pubDate>
		<dc:creator>Charles Edge</dc:creator>
				<category><![CDATA[General Technology]]></category>
		<category><![CDATA[IT Management]]></category>
		<category><![CDATA[Windows]]></category>

		<guid isPermaLink="false">http://www.318.com/techjournal/?p=105</guid>
		<description><![CDATA[Microsoft has announced that as of June 30th, 2008 Windows XP will no longer be distributed. You will still be able to buy machines that run Windows XP but it will become increasingly difficult in the months that follow. Windows XP will be supported by Microsoft until April 14th, 2014. However, only security-specific patches will [...]]]></description>
			<content:encoded><![CDATA[<p><a href='http://www.318.com/techjournal/wp-content/uploads/2008/05/images.jpeg' title='images.jpeg'><img src='http://www.318.com/techjournal/wp-content/uploads/2008/05/images.thumbnail.jpeg' alt='images.jpeg' /></a>Microsoft has announced that as of June 30th, 2008 Windows XP will no longer be distributed.  You will still be able to buy machines that run Windows XP but it will become increasingly difficult in the months that follow.  Windows XP will be supported by Microsoft until April 14th, 2014.  However, only security-specific patches will be released for XP after June.</p>
]]></content:encoded>
			<wfw:commentRss>http://techjournal.318.com/general-technology/windows-xp-no-longer-being-sold-after-june/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Windows SystemExplorer</title>
		<link>http://techjournal.318.com/security/windows-systemexplorer/</link>
		<comments>http://techjournal.318.com/security/windows-systemexplorer/#comments</comments>
		<pubDate>Wed, 19 Mar 2008 19:56:56 +0000</pubDate>
		<dc:creator>Charles Edge</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Windows]]></category>

		<guid isPermaLink="false">http://www.318.com/techjournal/?p=118</guid>
		<description><![CDATA[If you&#8217;re done with Task Manager then check out SystemExplorer at http://systemexplorer.mistergroup.org. SystemExplorer is a free utility that will help you search through those processes for the ones that are virus laden, leaking memory or just plain not supposed to be there and therefore wasting your valuable system resources. SystemExplorer can show file paths, parent [...]]]></description>
			<content:encoded><![CDATA[<p>If you&#8217;re done with Task Manager then check out SystemExplorer at http://systemexplorer.mistergroup.org.  SystemExplorer is a free utility that will help you search through those processes for the ones that are virus laden, leaking memory or just plain not supposed to be there and therefore wasting your valuable system resources.</p>
<p>SystemExplorer can show file paths, parent processes, process publishers, action histories and let you search for details against a database.  In short, there have been great replacements for Windows&#8217; Task Manager for years but this one might just be one of the better ones we&#8217;ve tried.</p>
]]></content:encoded>
			<wfw:commentRss>http://techjournal.318.com/security/windows-systemexplorer/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Microsoft Office Live Workspace</title>
		<link>http://techjournal.318.com/general-technology/microsoft-office-live-workspace/</link>
		<comments>http://techjournal.318.com/general-technology/microsoft-office-live-workspace/#comments</comments>
		<pubDate>Wed, 30 Jan 2008 22:23:28 +0000</pubDate>
		<dc:creator>Charles Edge</dc:creator>
				<category><![CDATA[General Technology]]></category>
		<category><![CDATA[Web Development]]></category>
		<category><![CDATA[Windows]]></category>

		<guid isPermaLink="false">http://www.318.com/techjournal/?p=100</guid>
		<description><![CDATA[Microsoft Office Live Workspace is a portal that allows you to view your Microsoft Office documents online. This includes the ability to share documents and do desktop presentations of Microsoft Office documents. Microsoft Office Live Workspace is in beta and free, so why not give it a try? That&#8217;s what Microsoft is asking now that [...]]]></description>
			<content:encoded><![CDATA[<p>Microsoft Office Live Workspace is a portal that allows you to view your Microsoft Office documents online.  This includes the ability to share documents and do desktop presentations of Microsoft Office documents.  Microsoft Office Live Workspace is in beta and free, so why not give it a try?  That&#8217;s what Microsoft is asking now that Google Docs and Zoho are moving towards commoditizing the document and spreadsheet space.  </p>
<p>So first impressions?  Office Live Workspace doesn&#8217;t let you edit documents.  Anyone who has used Google Docs or Zoho is going to be looking for that feature.  There is a nice plug-in that is free that allows you to save up to 500 Megabytes of new or existing files into the Workspace portal as well as edit documents that are actually located on the portal. You can also create multiple locations for others to access, called workspaces and sync task lists or online events with Microsoft Outlook (a feature most Outlook Web Access users are already using).  If you don&#8217;t have Office though, you can only view files and create notes about them.  Changes are automatically synchronized so you can easily work while offline without a lot of headache. </p>
<p>There&#8217;s also SharedView.  SharedView is part of Microsoft Office Live Workspace and gives other users the ability to view or take over your desktop as part of the collaboration benefits of Microsoft Office Live Workspace.  This is already available through other Microsoft technologies, but this is a little more user friendly and nicely ties together with the document editing process.<br />
<a href='http://www.318.com/techjournal/wp-content/uploads/2008/05/images-1.jpeg' title='images-1.jpeg'><img src='http://www.318.com/techjournal/wp-content/uploads/2008/05/images-1.thumbnail.jpeg' alt='images-1.jpeg' /></a><br />
All in all, users of Microsoft Office just got a host of new features with the Microsoft Office Live Workspace.  So we might as well take use of this new technology since Microsoft was so nice to give it to us.  However, if we&#8217;re looking for something that mirrors the functionality of Google Docs then this isn&#8217;t it.  It&#8217;s more of meeting half-way between Google Docs and Microsoft Office.  </p>
]]></content:encoded>
			<wfw:commentRss>http://techjournal.318.com/general-technology/microsoft-office-live-workspace/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Solid-State Drives up to 128GB</title>
		<link>http://techjournal.318.com/general-technology/solid-state-drives-up-to-128gb/</link>
		<comments>http://techjournal.318.com/general-technology/solid-state-drives-up-to-128gb/#comments</comments>
		<pubDate>Mon, 14 Jan 2008 22:23:31 +0000</pubDate>
		<dc:creator>Charles Edge</dc:creator>
				<category><![CDATA[General Technology]]></category>
		<category><![CDATA[Linux]]></category>
		<category><![CDATA[Mac OS X]]></category>
		<category><![CDATA[Mac OS X Server]]></category>
		<category><![CDATA[Windows]]></category>

		<guid isPermaLink="false">http://www.318.com/techjournal/?p=101</guid>
		<description><![CDATA[The new MacBook Air was introduced at MacWorld with the option for a 64GB Solid-State hard drive. Toshiba is also now offering Solid-State drives in sizes that are 32GB, 64GB and 128GB. The drives still seem to be lagging in adoption due to high costs, but they offer more durability, faster boot times and lower [...]]]></description>
			<content:encoded><![CDATA[<p>The new MacBook Air was introduced at MacWorld with the option for a 64GB Solid-State hard drive.  Toshiba is also now offering Solid-State drives in sizes that are 32GB, 64GB and 128GB.  The drives still seem to be lagging in adoption due to high costs, but they offer more durability, faster boot times and lower power requirements which should all lead to higher adoption over the next two years. </p>
<p>Toshiba will also begin making Solid-state SATA drives in May that can be used in desktop systems.<br />
<a href='http://www.318.com/techjournal/wp-content/uploads/2008/05/images-2.jpeg' title='images-2.jpeg'><img src='http://www.318.com/techjournal/wp-content/uploads/2008/05/images-2.thumbnail.jpeg' alt='images-2.jpeg' /></a></p>
]]></content:encoded>
			<wfw:commentRss>http://techjournal.318.com/general-technology/solid-state-drives-up-to-128gb/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Citrix and Open Source</title>
		<link>http://techjournal.318.com/linux/citrix-and-open-source/</link>
		<comments>http://techjournal.318.com/linux/citrix-and-open-source/#comments</comments>
		<pubDate>Fri, 02 Nov 2007 20:23:25 +0000</pubDate>
		<dc:creator>Charles Edge</dc:creator>
				<category><![CDATA[Linux]]></category>
		<category><![CDATA[Windows]]></category>

		<guid isPermaLink="false">http://www.318.com/techjournal/?p=91</guid>
		<description><![CDATA[It seems like everyone wants to dabble in the Open Source market these days. First came the RedHat, VA Linux and other public companies using Open Source technologies to ramp up. Then IT giants such as Novell, Sun and Apple started to come to markets with products faster due to their newfound Open Source roots. [...]]]></description>
			<content:encoded><![CDATA[<p>It seems like everyone wants to dabble in the Open Source market these days.  First came the RedHat, VA Linux and other public companies using Open Source technologies to ramp up.  Then IT giants such as Novell, Sun and Apple started to come to markets with products faster due to their newfound Open Source roots.  Now a lot of other companies are jumping on the bandwagon and introducing products based on Open Source technologies or purchasing other companies to help them do so quickly.</p>
<p>Citrix has purchased XenSource, a company that provided virtualization products based on the Xen Open Source virtualization platform.  XenSource is now a prodcut of Citrix that is meant to compete directly with VMWare on the virtualization scene.  Why use something like XenSource instead of just building a virtual cluster based on the actual Open Source Xen packages?  Citrix offers annual support plans for Standard Edition, which allows customers to receive support. In addition, Citrix is providing free web-based resources, including online product documentation, a knowledge base, and discussion forums, as is done with their popular Metaframe products.  And of course, XenSource becomes the preferred platform to run Citrix clusters on.  Not that VMWare won&#8217;t do a fine job, but support will be a lot easier if you&#8217;re using XenSource.</p>
]]></content:encoded>
			<wfw:commentRss>http://techjournal.318.com/linux/citrix-and-open-source/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Connecting Microsoft Entourage 2004 to Microsoft Exchange Server 2003</title>
		<link>http://techjournal.318.com/windows/connecting-microsoft-entourage-2004-to-microsoft-exchange-server-2003/</link>
		<comments>http://techjournal.318.com/windows/connecting-microsoft-entourage-2004-to-microsoft-exchange-server-2003/#comments</comments>
		<pubDate>Thu, 19 Apr 2007 01:16:01 +0000</pubDate>
		<dc:creator>Charles Edge</dc:creator>
				<category><![CDATA[Mac OS X]]></category>
		<category><![CDATA[Windows]]></category>

		<guid isPermaLink="false">http://www.318.com/techjournal/?p=74</guid>
		<description><![CDATA[Microsoft Entourage interacts with Microsoft Exchange differently than a typical Microsoft Office client. There are some fundamental concerns that an organization should have when using Entourage with Exchange. One difference that is important to point out early in the process is the fact that Microsoft Entourage can cause Exchange database files to become bloated with [...]]]></description>
			<content:encoded><![CDATA[<p>Microsoft Entourage interacts with Microsoft Exchange differently than a typical Microsoft Office client.  There are some fundamental concerns that an organization should have when using Entourage with Exchange.  One difference that is important to point out early in the process is the fact that Microsoft Entourage can cause Exchange database files to become bloated with streaming information in the *.stm files that is not otherwise needed.  There are 3 ways to combat this when/if it occurs:<br />
1)	Run a eseutil command while the database is stopped to defrag the database.  When using eseutil you will need a minimum amount of freespace available that is equal to the database size.<br />
2)	Migrate mailboxes between information stores on the Exchange Server (if Exchange Enterprise) in order to be able to delete the old Exchange database and clear out the fragmentation.<br />
3)	Delete the old database and restore from a backup.</p>
<p>Note: Over the course of working with this type of infrastructure for years, it should be noted that using Exchange Enterprise and using multiple message stores is the best way to handle this issue if you have the appropriate licensing and disk space.</p>
<p>Another common issue that is encountered with administering Entourage that is not likely to occur with Exchange is that the change of a users message store to a new server with a new address requires that the client be reconfigured to accommodate for the new address.  So if a users mailbox is moved from Exchange23 to Exchange 87 then the client will need to be updated.  This is not typically the case with Outlook as it will use x.500 records to update the users client software to reflect the new location of the message store on a per client basis.</p>
<p>To begin to setup the first account, from Entourage select Tools -> Accounts and you will see the accounts window.  Entourage can actually log into multiple Exchange accounts concurrently.  If the user has POP and IMAP accounts in addition to the Exchange account, the Accounts landing page will be where all accounts are configured.  To configure an Exchange account, click on arrow to the right of the New button and click Exchange. </p>
<p>This will bring up the Account Setup Assistant.  Here, you will enter the default Email address for the account into the Email Address field and check the box for My account is on an Exchange server.  Then you will enter the users login credentials for Active Directory in the User ID field and the Active Directory domain in the Domain field.  The password for the user should be entered into the password field and then click on the right arrow to allow the client to attempt to find the appropriate server information automatically.  If this fails do not be alarmed, it will typically fail.  However, if the DNS information in the users TCP/IP settings is correct then at times it will succeed.</p>
<p>Once you have entered the data, click on the right arrow button.  If DNS settings are configured effectively then it may setup the account automatically; however, this is prone to failure.</p>
<p>Click on the Configure account manually button to bring up a screen that will allow you to enter the needed information to configure the account properly.  Settings in the Account Settings tab include:<br />
1)	The Name is the name that will be placed in the From: field of emails sent through this account.<br />
2)	The Email address is the DEFAULT email address for the user.<br />
3)	The Account ID is the users login credentials to Active Directory.  There are times when the Account ID will also need the NetBIOS domain prepended to it.  For example, if the NetBIOS domain name in your environment is Patagonia, then the Account ID might read MyDomain/administrator.  The settings used here should be easily mirrored from what is used by Outlook Web Access.<br />
4)	The Exchange server address is not automatically detected when performing a manual setup, so if you have multiple Exchange servers in your environment you may have to manually enter the DNS name or IP address of the server in the Exchange server: field.</p>
<p>Once you are satisfied with the settings under the Account Settings screen, click on the Options tab of the Edit Account Window.  Options include:<br />
1)	Receive complete messages – This is typically the best choice over partially receive messages for most users<br />
2)	Partially receive messages over – For larger messages, you can choose to only receive the first 50 (or whatever number you enter into this field) KB of the message.  This is often used to make mail appear faster, although for attachments it can cause the user to have to manually retrieve the attachment which can be fairly annoying.  This is also helpful in troubleshooting as a large message can clog up the ability to download a mailbox.<br />
3)	Default Signature – Choose the signature you would like to use for your Exchange account.<br />
4)	Headers – Headers can be used for rule processing.  If you are not using this then you likely do not need to use this field.</p>
<p>Once you are satisfied with your settings for the account options page, click on the Advanced screen to configure public folder settings and LDAP settings.  Options here include:<br />
1)	Public folders server – This is the IP address or DNS name of the Exchange server.  If you have Exchange servers dedicated to public folder storage then you would use the address of these in this field, otherwise it should be set to be the same as the Exchange server being used to log in.  In Microsoft Exchange, not all servers house public folders.  Each folder can be set to replicate amongst specified servers.  Outlook enumerates this automatically but Entourage does not.<br />
2)	DAV service requires a secure connection (SSL)<br />
3)	Override default DAV port – If Outlook Web Access is running on a port other than 80 (or 443 if SSL is being used) then this setting will need to be used.<br />
4)	LDAP Server – This is the IP address or DNS name of the LDAP server that you will be accessing.  Sometimes this is an Active Directory controller, but other times this is the Exchange server according to how roles have been assigned to computers.<br />
5)	This server requires me to log on – unless your Active Directory server allows unauthenticated logons (very rare) this option needs to be checked<br />
6)	This LDAP Server requires a secure connection (SSL) – If your LDAP server needs an SSL Cert then you will need to check this box.  If this is the case then you will need to install the SSL certificate using Keychain Access.<br />
7)	Override default LDAP port – If the LDAP port or you are running for Active Directory has been customized or if you are running a 3rd party LDAP store then this setting will need to be changed.<br />
 <img src='http://techjournal.318.com/wp-includes/images/smilies/icon_cool.gif' alt='8)' class='wp-smiley' /> Maximum number of results to return – for companies larger than 1,000 users you may need to increase this to see the entire GAL.<br />
9)	Search Base – leaving this field blank is usually fine unless you want users to have access to the GAL.  GAL access can be obtained by filling in the appropriate search base.  </p>
<p>Once you have set the Advanced Options we can configure Delegate access.  To do so, click on the Delegate tab and configure delegation for the specified user.  The My Delegates section is where you provide other users with the ability to send on the users behalf.  Other users can be added by clicking on the Add… button.  To add other users whose mailbox the user has access to you would use the Users I am a delegate for section.  Here, you can click on the Add…  button to add users whose folders and send on behalf of permissions this mail client should have access to.  Just as with Outlook, for specific folder access you would grant this by right-clicking (control-clicking in a Mac environment with a one-button mouse) and clicking on the permissions button.  As with Microsoft Outlook, permission must be given at the root folder and then any folders in the folder structure below that folder.  Unlike an Outlook environment, occasionally the permissions button will timeout.  If this is the case then use the Microsoft Outlook client while logged in as the user to make these types of delegation changes for the user.</p>
<p>Once you have set the Delegate options, click on the Security tab if you need to configure SSL options.  Otherwise you can skip this section and click on OK.  If you do need to configure SSL, click on the Security tab and use the Select button to choose any certs that are installed on the computer.</p>
<p>Once you have configured all of the settings for the Exchange account, click OK.  Now you can go to the Entourage Main Window and verify that your account is online.  If the account says (Not connected) then connectivity is not there and you will need to troubleshoot.  </p>
]]></content:encoded>
			<wfw:commentRss>http://techjournal.318.com/windows/connecting-microsoft-entourage-2004-to-microsoft-exchange-server-2003/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Malware &#8211; Today&#8217;s Worst Enemy for PC Users</title>
		<link>http://techjournal.318.com/security/malware-todays-worst-enemy-for-pc-users/</link>
		<comments>http://techjournal.318.com/security/malware-todays-worst-enemy-for-pc-users/#comments</comments>
		<pubDate>Fri, 26 Jan 2007 18:47:57 +0000</pubDate>
		<dc:creator>Charles Edge</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Windows]]></category>

		<guid isPermaLink="false">http://www.318.com/techjournal/?p=18</guid>
		<description><![CDATA[How to Know You Have it and What to do About Removing It What is it? Malware, short for Malicious software, is the macro concept behind names like &#8220;Adware&#8221;, &#8220;Spyware&#8221;, &#8220;Hijackers&#8221;, &#8220;Toolbars&#8221; and &#8220;Dialers&#8221;. Malware is a growing PC-related assault epidemic (doesn&#8217;t effect Macintosh too much yet). How you get it? Malware tends to sneak [...]]]></description>
			<content:encoded><![CDATA[<p>How to Know You Have it and What to do About Removing It</p>
<p>What is it? Malware, short for Malicious software, is the macro concept behind names like &#8220;Adware&#8221;, &#8220;Spyware&#8221;, &#8220;Hijackers&#8221;, &#8220;Toolbars&#8221; and &#8220;Dialers&#8221;. Malware is a growing PC-related assault epidemic (doesn&#8217;t effect Macintosh too much yet).</p>
<p>How you get it? Malware tends to sneak into your life (usually in a hidden or invisible manner) via third party software (software from less-than well known developers) disguised as added functionality to your work flow and your internet experience (and other bells and whistles) in order to execute many malicious tasks that are bad for business.</p>
<p>Tell tail signs you have it- there&#8217;s the activity you can see; Pop-up ads, re-directing of your browser, out-of-the-ordinary sluggishness, and other virus-like activity. Then there&#8217;s the activity you can&#8217;t see (and generally the most malicious of all); The taking of personal information from different parts of your PC, keeping track of web sites you visit and web searches you make, files you download, software you install.</p>
<p>All of this can (and usually does) involve your personal and sometimes private information, cause system slow down or even interruption inproductivity and produce virus-like activity to the point of annoyance or even system crash. This involves security issues, downtime and productivity loss (money lost!)</p>
<p>Discovering you are one of malware&#8217;s victims is critical and yet only half the battle. Knowing what steps to take to rid your life of it (and possibly to prevent future attacks) is then key. The point is, malware is bad and Three18 can help you get rid of it.</p>
<p>At Three18 we continue to stay on top of current malware and other emerging malicious technologies and we pride ourselves on educating our clientele on the benefits of using practical skeptical computing technique to reduce the possibility of malware ever getting to your system and/or network.</p>
<p>If you do get malware&#8217;d, Three18 will help to get you and your network cleaned up and safely back onto the information super highway!</p>
]]></content:encoded>
			<wfw:commentRss>http://techjournal.318.com/security/malware-todays-worst-enemy-for-pc-users/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Office 12 – A New Look</title>
		<link>http://techjournal.318.com/windows/office-12-%e2%80%93-a-new-look/</link>
		<comments>http://techjournal.318.com/windows/office-12-%e2%80%93-a-new-look/#comments</comments>
		<pubDate>Wed, 28 Jun 2006 01:36:42 +0000</pubDate>
		<dc:creator>Charles Edge</dc:creator>
				<category><![CDATA[Windows]]></category>

		<guid isPermaLink="false">http://www.318.com/techjournal/?p=78</guid>
		<description><![CDATA[Microsoft has released the beta version of Microsoft Office, version 12. This new version is packed with new features and of course, a new look for documents. Office 12 no longer has drop down menus. This has been a hallmark of Microsoft Office since the first version. Nearly every other productivity suite has been built [...]]]></description>
			<content:encoded><![CDATA[<p>Microsoft has released the beta version of Microsoft Office, version 12.  This new version is packed with new features and of course, a new look for documents.  </p>
<p>Office 12 no longer has drop down menus.  This has been a hallmark of Microsoft Office since the first version.  Nearly every other productivity suite has been built around drop down menus on every platform since the days before point-and-click.  Microsoft has replaced drop down menus with a new concept that they are calling the ribbon.  When you click on what were once drop down menus, the toolbars change to include only the features relevant to that option.  By placing buttons and menus in the ribbon, Microsoft is able to include many new features without forcing users to have so many toolbars that their workspace is greatly reduced.  The ribbon is not resizeable, so users of bigger monitors will likely approve of this feature than users of smaller monitors.</p>
<p>Other new features in Office 12 include the ability to save files into read-only PDFs, an Inspector that allows users to hide text or reveal text, the ability to remove the document creators name and contact information, a live preview feature that allows users to view the effect of changes before making them and tighter integration with OneNote.</p>
<p>There are also new features specific to components of Office 12.  Word 12 includes a new zoom bar, which is meant to help zoom in and out of text rapidly as well as a new bar at the bottom of the screen that includes word count, page count and other information about the document.  Conditional formatting in Excel 12 allows users to spruce up their spreadsheets with colors and effects based on formula outputs.  PowerPoint 12 now gives a greater sense of control with more streamlined features.  Outlook 12, unlike the rest of the Office suite, did not receive the ribbon.  It did get the sleek new interface, a To-Do bar and color coded users, a feature useful in shared environments.  Finally, Access was given a new interface to make it easier and faster to rapidly create databases.</p>
<p>Microsoft Office has given the world a standard for documents that has enabled sharing to a level that might not have otherwise been possible.  With their latest version they are making their format for documents open source, or freely useable by other organizations, in order to enable people to share documents between applications more freely.  With this innovation in the way that Microsoft goes about business, they are joining the packs of companies such as Novell, RedHat and Apple.  While Microsoft has been criticized in the past for their fierce competition, this change will actually foster innovation in the field of word processing, spreadsheet creation and presentations.  The new format will also allow users to make larger files and shrink existing files, as it splits each file into separate components stored in a .zip format.  The new format will have an x at the end of the name of each extension for old formats.  For example, Word files would be .docx and PowerPoint files would be .pptx.</p>
<p>There will be an initial learning curve for adopters of Microsoft Office 12, but the productivity enhancements will quickly offset this with the proper training and planning.  </p>
]]></content:encoded>
			<wfw:commentRss>http://techjournal.318.com/windows/office-12-%e2%80%93-a-new-look/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>The MalWare Cat and Mouse Game</title>
		<link>http://techjournal.318.com/windows/the-malware-cat-and-mouse-game/</link>
		<comments>http://techjournal.318.com/windows/the-malware-cat-and-mouse-game/#comments</comments>
		<pubDate>Wed, 05 Oct 2005 20:22:40 +0000</pubDate>
		<dc:creator>Charles Edge</dc:creator>
				<category><![CDATA[Windows]]></category>

		<guid isPermaLink="false">http://www.318.com/techjournal/?p=51</guid>
		<description><![CDATA[Spyware is software that covertly gathers user information through the user&#8217;s Internet connection without their knowledge, usually for advertising purposes. Adware refers to any software application or program displaying advertising banners or Pop-up. Adware is often considered spyware (although not always) and is typically installed without the user&#8217;s knowledge. Malware is a general term that [...]]]></description>
			<content:encoded><![CDATA[<p>Spyware is software that covertly gathers user information through the user&#8217;s Internet connection without their knowledge, usually for advertising purposes. Adware refers to any software application or program displaying advertising banners or Pop-up. Adware is often considered spyware (although not always) and is typically installed without the user&#8217;s knowledge.  Malware is a general term that encompases both of these and often viruses and trojan horses, which can cause computers to become slow due to the amount of processing power that these applications can take and the number of them that can infect computers.</p>
<p>Malware applications are typically bundled as a hidden component of shareware programs, online music, scripts hidden on websites and viruses that can be downloaded from the Internet.  Over the past two years, many products have been released such as Windows XP Service Pack 2, Adaware and Spybot Search and Destroy that can effectively remove spyware.  However, spyware and adware authors were able to make a lot of money from their pseudo-legal actions and have become better programmers in their newfound spare time.</p>
<p>Many spyware and adware products have begun to incorporate the use of root kits into their software. A root kit is a set of tools used by intruders once they have hacked into a computer system. These tools can help the attacker maintain his or her access to the system and use it for malicious purposes. Root kits often discuise themselves in order to prevent detection.  Root kits exist for a variety of operating systems such as Linux, Solaris, and versions of Microsoft Windows.  Root kits are typically used by attackers to build collections of slave systems and hide their tracks.  </p>
<p>By using techniques that are most commonly attributed to attackers, spyware and adware products are becoming more and more harmful to systems.  The utilities that once helped to resolve malware issues on systems are not working as well as they once did because of these new techniques employed by malware authors.  Many of these techniques go far beyond simply hiding the malware and involve teaching the operating system to pretend that the malware doesn’t exist to make it almost impossible to find.</p>
<p>RootKit Revealer is a free product distributed by sysinternals.com that can search for known root kits.  A litmitation of this application is that it doesn’t find new attacks that were released since the last revision of Rootkit Revealer.  Microsoft is also looking into software that can detect root kits with their Strider Ghostbuster Project.  Both RootKit Revealer and Strider Ghostbuster not only look for root kits but also look for any attempts to hide any applications from the operating system.</p>
<p>This was effective when the projects were announced and first released.  Now, a new generation of malware is coming along that is intelligent enough to actually hide itself from standard searches and then not hide itself from the RootKit Revealer or Strider Ghostbuster scans.  The finesse with which authors of malware are creating their root kits often leaves one wondering who is ahead in the game.</p>
<p>For more information on the many rootkit removal services that may be available to your business, please contact Three18, Inc. at 310-581-9500 or via email at sales@318.com</p>
]]></content:encoded>
			<wfw:commentRss>http://techjournal.318.com/windows/the-malware-cat-and-mouse-game/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Functionality Differences between Microsoft Entourage 2004 and Microsoft Outlook 2001 for Mac</title>
		<link>http://techjournal.318.com/windows/functionality-differences-between-microsoft-entourage-2004-and-microsoft-outlook-2001-for-mac/</link>
		<comments>http://techjournal.318.com/windows/functionality-differences-between-microsoft-entourage-2004-and-microsoft-outlook-2001-for-mac/#comments</comments>
		<pubDate>Sat, 28 May 2005 01:19:02 +0000</pubDate>
		<dc:creator>Charles Edge</dc:creator>
				<category><![CDATA[Mac OS X]]></category>
		<category><![CDATA[Windows]]></category>

		<guid isPermaLink="false">http://www.318.com/techjournal/?p=75</guid>
		<description><![CDATA[Entourage 2004 has more options than Outlook 2001 but also does not communicate over MAPI but instead over WebDAV (OWA). The Graphical User Interface (GUI) level changes are too numerous to review. A conversion from Outlook 2001 to Entourage 2004 requires retooling the workforce for the new application. Schedules, cached email addresses, signatures and other [...]]]></description>
			<content:encoded><![CDATA[<p>Entourage 2004 has more options than Outlook 2001 but also does not communicate over MAPI but instead over WebDAV (OWA).</p>
<p>The Graphical User Interface (GUI) level changes are too numerous to review.  A conversion from Outlook 2001 to Entourage 2004 requires retooling the workforce for the new application.  Schedules, cached email addresses, signatures and other settings will be lost during the migration, but mail, contacts, calendars, to-do items and tasks should survive the migration.  </p>
<p>Once common theme across the two is wasted resources.  Outlook 2001 required OS 9 to run in OS X.  Entourage 2004 requires Rosetta to run in OS X.  Both waste a considerable amount of resources.  However, both are the only supported clients for Microsoft Exchange for the Mac platform.  One note about a possible Exchange 2007 upgrade is that you will loose your free CAL licensing for Entourage.  If you read the EULA you no longer receive free Entourage licenses per CAL of Exchange 2007.  </p>
]]></content:encoded>
			<wfw:commentRss>http://techjournal.318.com/windows/functionality-differences-between-microsoft-entourage-2004-and-microsoft-outlook-2001-for-mac/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

