Kaspersky Rescue Disk
Download ไฟล์สำเร็จรูปได้จาก
http://devbuilds.kaspersky-labs.com/devbuilds/RescueDisk/
เสร็จแล้วเอามา update datafile ให้ล่าสุดได้จาก wizard
มันจะสร้างไฟล์ใหม่ขึ้นมาให้เอง
จดเอาไว้กันลืม
Download ไฟล์สำเร็จรูปได้จาก
http://devbuilds.kaspersky-labs.com/devbuilds/RescueDisk/
เสร็จแล้วเอามา update datafile ให้ล่าสุดได้จาก wizard
มันจะสร้างไฟล์ใหม่ขึ้นมาให้เอง
Posted by
tektip
at
9/29/2009 09:03:00 PM
0
comments
ในบางกรณีเราอาจอยากจะใช้ key file แทน activation code ที่ได้มาจากการซื้อแบบกล่อง retail ก็ได้ เช่น กรณีที่เอาตัว mod KIS ไปลงที่ server จะไม่มี ให้ใส่ activation code จึงต้องใช้ key file แทน มีวิธีแปลงได้ จากเวปนี้
https://activation.kaspersky.com/en/index.html
Posted by
NJTD
at
9/04/2009 08:33:00 AM
0
comments
Concept คร่าว
1. Drive ที่เก็บ database เอาไว้ห้ามทำ Compression เอาไว้เพราะจะทำให้ sql ทำงานช้าลงมาก
2. run sql service โดยใช้ account ที่สร้างขึ้นมาใหม่โดยเฉพาะ โดยให้เป็น user ธรรมดา แล้ว SQL Server จะ assign permission ต่างๆที่จำเป็นให้เองตอน Install อย่า run sql server โดยใช้ Local System Account เด็ดขาด
3. Authentication Mode ให้ใช้ Windows Authentication Mode เพราะเป็นการบังคับให้ user ที่จะใช้งาน sql นั้นจะต้อง login เข้า domain ก่อน อย่าเลือก Mixed Mode โดยเด็ดขาด
4. ลง SQL SP4
5. ลง Post SP4 hotfix ล่าสุดคือ build 2282 download ได้จาก http://www.microsoft.com/downloads/details.aspx?familyid=a93f3cfe-18c9-4218-a551-13bf415e418a&displaylang=en
สำหรับ Post SP4 Analysis Service build 2174 download ได้จาก
http://www.microsoft.com/downloads/details.aspx?displaylang=en&FamilyID=9c9ab140-bdee-44df-b7a3-e6849297754a
สามารถ check build ของ sql server ล่าสุดได้จากเวป
http://www.bigdatabaselist.com/wiki/SQL_Server_Version_Builds
Note
- ถ้ามีปัญหาเกี่ยวกับ replicate olap ให้ add user account ที่ run sql ให้อยู่ใน olap administrator
Posted by
tektip
at
8/23/2009 01:45:00 AM
0
comments
สำหรับ SQL 2000 เปิด Query Analyzer แล้วใช้คำสั่ง
SELECT SERVERPROPERTY('productversion'), SERVERPROPERTY ('productlevel'), SERVERPROPERTY ('edition')
หรือ
Select @@version
The following table lists the Sqlservr.exe version number.
| Release | Sqlservr.exe |
|---|---|
| RTM | 2000.80.194.0 |
| SQL Server 2000 SP1 | 2000.80.384.0 |
| SQL Server 2000 SP2 | 2000.80.534.0 |
| SQL Server 2000 SP3 | 2000.80.760.0 |
| SQL Server 2000 SP3a | 2000.80.760.0 |
| SQL Server 2000 SP4 | 2000.8.00.2039 |
http://sqlserverbuilds.blogspot.com/
http://www.sqlteam.com/article/sql-server-versions
Posted by
tektip
at
8/23/2009 01:34:00 AM
0
comments
Dell Systems Management Tools and Documentation (SMTD)
ใช้สำหรับ Install OS และโดยเตรียม partition ให้มองเห็น harddisk และลง Driver ล่าสุดให้
ข้อมูลของทั้ง Virtual Disk 0 จะหายไปให้ Backup เอาไว้ก่อน
ถ้ามีการใช้ Virtual Disk 1 ให้ดึงออกมาก่อนเผื่อข้อมูลหาย
Dell Systems Build and Update Utility (SUU)
เป็นแผ่นรวม BIOS และ Firmware รวมถึง Driver ด้วย ทั้งของ server เองและอุปกรณ์ต่อพ่องของ dell ที่ต่ออยู่กับ server นั้น
มันจะ scan หา BIOS, firmware, driver ของเครื่องทั้งหมด และเปรียบเทียบกับที่มีอยู่ในแผ่น
สามารถสั่ง update ได้พร้อมกันทีเดียว
ข้อควรระวังคือไม่ควร update firmware ของ harddisk อาจจะทำให้ข้อมูลหายหมด
http://ftp.us.dell.com/sysman แล้วค้นหาคำว่า SUU
Posted by
tektip
at
8/15/2009 12:42:00 AM
0
comments
วิธีง่ายๆมี 2 วิธี ที่ฟรี
1. ใช้ xcopy
http://support.microsoft.com/kb/323007
เช่น
xcopy c:\olddocs c:\newdocs /O /X /E /H /K
2. robocopy จาก resource kit ของ Windows 2003
http://www.enterprisenetworkingplanet.com/netos/article.php/3719606
- ถ้าไฟล์ถูก lock เพราะว่ากำลังถูกใช้งานอยู่มันจะ สามารถทำงานต่อไปได้
copy folder ไปยังอีก server นึง สามารถใช้ \\ ร่วมด้วยได้
robocopy d:\userdata\bob e:\userdata_backup\bob /copyall /e
mirror ข้อมูล (สามารถ copy เฉพาะไฟล์ที่เปลี่ยนแปลงได้ด้วย) จะลบข้อมูลปลายทางด้วยถ้าต้นทางโดนลบไปแล้ว
robocopy d:\userdata\bob e:\userdata_backup\bob /copyall /mir
/R:0 ให้ข้ามไฟล์ที่ถูก lock ไป
/W:0 รอนานเท่าไหร่ถึงจะ retire
3. robocopy GUI 3.1.2
http://download.microsoft.com/download/f/d/0/fd05def7-68a1-4f71-8546-25c359cc0842/UtilitySpotlight2006_11.exe
Note
- อย่าลืมเปิด CMD ด้วย run as administrator ไม่งั้นจะ copy ไม่ได้
Posted by
NJTD
at
8/11/2009 01:45:00 PM
0
comments
บางครั้งเราต้องการที่จะ Remote ไปควบคุม Console Session แต่จะเจอ error ว่า
"Can't remote control Session (ID 0) because Remote Control is disabled
on that session"
แก้โดยการใช้ command line mstsc.exe /console แล้วให้ connect กลับมาที่ server ใหม่จะสามารถ control console session ได้
mstsc.exe - when connecting to Server 2003-based system will begin a new interactive session independant of the console session
mstsc.exe - when connecting to XP or Vista will connect to the console session as virtual interactive sessions are not supported
mstsc.exe /console - connecting to a Server 2003-based system will enable you to connect to the 0 console session
Once connected to your server, whether console or other interactive session, you can launch the task manager > click on the Users tab > view interactive sessions 0, 1, 2 etcetera.
If you right-click on any of the listed sessions that are not your current session, the options you receive are:
- Connect
- Disconnect
- Log off
- Remote Control
By this method you can log off or connect to any existing session.
Example:
The user is logged on to the home server via mstsc.exe /console from their home computer (session ID 0). The user closes the mstsc window and leaves their session active with tasks running. The user then connects to the home server via mstsc.exe without the /console switch and is then given a new interactive session with ID 1.
Wishing to reconnect to her 0 session and logoff session 1, she:
1. Launches the task manager
2.Navigates to the Users tab
3.Right-clicks the ID 0 session
4.Clicks Connect > the view then changes to session 0 with full interactive capability.
- Session 1 still remains logged in but will show as Disconnected.
5.From session 0 she launches the task manager
6.Navigates to the Users tab
7.Right-clicks session 1 and clicks Logoff
- Session 1 is now gone and the only active session is the 0 console session which she is currently connected to.
Posted by
NJTD
at
8/06/2009 08:47:00 PM
0
comments
Router 783H สามารถทำ WAN Backup Link ได้ โดยจะอยู่ในหัวข้อของ WAN
Backup Type
- DSL Link จะเช็กว่า adsl หลุดหรือเปล่า
- ICMP จะเช็กโดยการ ping ไปยัง WAN IP ทั้ง 3
Fail Tolerance
- Default = 2 คือจำนวนครั้งในการ ping ไปยัง WAN IP
Recovery Interval
- Default = 30 sec คือเวลาที่ใช้ในการเช็กว่า link up กลับคืนมาหรือยัง
Timeout
- เวลาที่ใช้ในการรอการตอบกลับจาก ping ทดสอบ WAN IP ที่ได้ set เอาไว้
- Default = 30 sec
Traffic Redirect
- ให้ใส่ IP ของ Backup Gateway ที่สำรองไว้ จะต้องมี IP อยู่ในวงเดียวกันถึงจะใช้งานได้ สามารถใช้ ip alias ร่วมด้วยได้
- เช่น router หลักใช้ 192.168.3.1 router สำรองก็จะต้องใช้ ip ของวง 192.168.3.x ด้วย โดยสามารถใช้เป็น ip alias ได้ คือ router สำรอง อาจจะมี ip หลักคือ 192.168.2.x ก็ได้
- ถ้าเปลี่ยนไปใช้ back link เมื่อไหร่ ภายนอกจะไม่สามารถ remote เข้ามาได้ แต่ภายใน สามารถทำงานได้อย่างปกติ
Posted by
tektip
at
7/28/2009 03:50:00 PM
0
comments
3com Switch รุ่น 4500 , 5500 จะแบ่ง level ของ user ออกเป็นหลายระดับ สามารสร้างเพิ่มได้ และสามารถเปลี่ยนระดับของการ config คล้ายกับของ Cisco
ที่ใช้โดยทั่วไปคือ user admin
และเมื่อต้องการเข้าไป config ก็จะเปลี่ยน mode โดยใช้คำสั่ง system-view
เมื่อต้องการกลับออกมากด ctrl-z
สั่งอะไรไปแล้วอย่าลืมสั่ง save ด้วย
default แล้ว passwd จะยาว 10 ตัวอักษร สามารถเปลี่ยนความยาวได้จาก system-view
โดยใช้คำสั่ง password-control length 4 [เปลี่ยนให้มีความยาวอย่างน้อย 4 ตัวอักษร]
Posted by
tektip
at
6/14/2009 12:25:00 PM
0
comments
ลบ Cache ทุกครั้งหลังจากปิด IE (User Config ก็มีด้วย)
Computer Config/Admin template/Internet Explorer/Internet Control Panel/Advance page/Empty Internet files ....
Turn Off inline autocomplete in windows explorer
User Config/admin template/Internet explorer/Internet setting/autocomplete
Turn on classic shell (อย่าใช้ไม่ work)
User Config/admin template/Windows Explorer/Windows Explorer
Posted by
tektip
at
6/13/2009 05:49:00 PM
0
comments
วิธีเติมหมึก HP
http://www.bloggang.com/viewblog.php?id=chaiya&group=1
วิธี reset ตลับหมึก HP
http://www.bloggang.com/viewblog.php?id=chaiya&group=8
Posted by
NJTD
at
6/09/2009 01:21:00 PM
0
comments
อย่างคร่าวๆ ถ้าละเอียดให้ไปอ่านเอาจาก Release Note version เก่าๆ (version ใหม่ๆไม่ได้บอกรายละเอียดของคำสั่งที่ใช้)
1. หลังจากที่ downlaod firmware ตัวใหม่มาแล้ว แตกไฟล์ออกมาจะพบกับไฟล์นามสกุลนี้คือ
.app เป็น switch application software
.btm เป็น switch boot ROM software
.web เป็น switch web file for http management
2. install tftp server แล้ว config ให้ไปมองที่ folder ที่เก็บไฟล์ที่แตกออกมา
3. telnet ไปที่ switch ใช้คำสั่ง dir เพื่อดูชื่อไฟล์อันเก่า และเนื้อที่ว่าง
4. ลบไฟล์เก่าออกเพื่อให้มีที่ว่างพอจะเก็บไฟล์ใหม่ทั้ง 3 ไฟล์ลงไป โดยใช้คำสั่ง
delete /unreserved flash:/[filename]
ทำจนครบทั้ง 3 ไฟล์แล้ว dir ดูอีกทีจะเห็นได้เนื้อที่ว่างเพิ่มขึ้น
5. ใช้ tftp ดึงไฟล์ใหม่มาจาก tftp server โดยคำสั่ง
tftp [ip tftp server] get [filename]
ทำจนครบ 3 ไฟล์
6. สั่งให้ switch ไปใช้ boot loader ตัวใหม่
boot boot-loader flash:/[filename.app]
7. สั่งให้ไปใช้ boot rom ตัวใหม่
boot bootrom flash:/[filename.btm]
8. สั่ง save เสร็จแล้วสั่ง reboot
9. telnet เข้าไปอีกครับ แล้วสั่งให้ใช้ web package ตัวใหม่
boot web-package [filename.web] main
10. สั่ง save และ reboot อีกครั้ง
http://support.3com.com/documents/switches/4500/Switch_4500_V3_03_00_Release_Notes.pdf
Posted by
tektip
at
6/07/2009 03:55:00 PM
0
comments
Concept
- Enable Audit Polocy สำหรับ audit file และ folder ต้องเลือก audit ที่ "Audit Object Access"
โดยไปที่ Computer Configuration/Windows Settings/Security Setting/Local Policy/Audit Policy/Audit Object Access เลือกว่าจะให้ audit กรณีไหน Failure , Success
-ไปที่ Object ที่ต้องการ audit เช่น file หรือ folder ก็ได้ click ขวาเลือก properties ไปที่แถบ Security กดปุ่ม Advanced ไปที่แถบ Audit แล้วใส่ User หรือ Group ที่ต้องการ Audit เสร็จแล้วเลือกว่าต้องการให้ audit กรณีไหนบ้างเช่น Delele file and folder และที่สำคัญ ห้ามเลือก Apply these auditing entries to objects and/or containers winthin this container only โดยเด็ดขาด ไม่งั้น มันจะไม่มีผลกับ object ที่อยู่ภายใน
- วิธีดู Event Log จะอยู่ใน Security Log แต่จะมีเยอะมาก จะต้องทำ Filter ดูเฉพาะ Source และ Category ที่ต้องการจะดูเท่านั้นเช่น Source = Security , Category = Object Access ถ้าจะดูว่าลบอะไรต้อง Click เข้าไปดูข้างใน
Note
- ต้องระวัง Log เต็มให้เพิ่มขนาด log ให้มีขนาดใหญ่พอที่จะเก็บข้อมูลได้นาน 1-2 เดือน
- สำหรับ Windows Server 2008
http://blogs.dirteam.com/blogs/jorge/archive/2008/04/29/auditing-in-windows-server-2008.aspx
การใช้ Filter สำหรับการหาไฟล์ที่ถูก Delete
1. Event ID ที่เกี่ยวข้องคือ 4663 , 4656
2. Event Level = Information
3. Event Sources = Microsoft-Windows-Security-Auditing
4. Task Catagory = File System
5. Keyword = Audit Success
6. เมื่อสร้าง Filter เสร็จแล้วสามารถ Save ให้เป็น Custom Filter ได้ด้วย
Posted by
tektip
at
5/08/2009 11:46:00 PM
0
comments
Noise Margin (ยิ่งมากยิ่งดี)
5db or below =bad, no sync/intermittent sync
8db-13db = average - and no sync issues
14db-22db = very good
23db-28db = excellent
29db-35db = rare, can throw a rock at co/remote
Line Attenuation (ยิ่งน้อยยิ่งดี 0=node)
ต่ำกว่า 20 = rare, great copper lines, close to co/remote
20-30 = excellent
30-40 = very good
40-60 = average
60-65 = poor
65 and above will have issues
Posted by
tektip
at
5/01/2009 08:41:00 PM
0
comments
ขั้นตอนสรุปคร่าวๆ
1. ไป unlock domain protect ที่ nsi ก่อน มันจะส่ง authorization code มาให้ (default มันจะ lock มาให้เลย)
2. หลังจากที่สมัครการย้าย Domain ที่ godaddy แล้ว มันจะส่ง Transaction ID และ Security Code ให้
3. ใน godaddy ไปที่ my account section domain transfer แล้วก็ไปใส่ transaction id , security code , authorization code
4. รอ 5 วัน ไม่จะเป็นต้องตอบรับหรือทำอะไร
---------------------
1. ขอเปลี่ยนอีเมลในส่วน Admin Contact เป็นที่ท่านสามารถเช็คได้ เพื่อความสะดวกในการย้ายโดเมนเน
เนื่องจากต้องมีการคลิกยืนยันก
2. ขอ unlock โดเมนเนม
3. Request ให้ส่ง
4. *** สำคัญมากค่ะ หากมีการตั้งค่า Protect Privacy ของโดเมนเนมไว้ รบกวนทางบริษัทที่ดูแล Disable ในส่วนนี้ด้วยค่ะ
ระหว่างการย้ายโดเมนเนมไม่มีผลต
-------------------------------------
Posted by
tektip
at
4/27/2009 02:01:00 AM
0
comments
บางกรณี Account บาง Account ใน Google Apps อาจจะถูก lock เองได้ (เช่นใส่ password ผิดหลายๆครั้งเป็นต้น)
ซึ่งจะทำให้ไม่สามารถรับส่ง mail ทาง pop กับ smtp ได้ แต่สามารถเข้าทาง webmail ได้
สามารถทำการปลด lock ได้โดยเข้าที่ที่นี่
https://www.google.com/a/[yourdoamin.com]/UnlockCaptcha
สำหรับ account gmail ปกติ สามารถปลด lock ได้จาก
https://www.google.com/accounts/DisplayUnlockCaptcha
ถ้าไม่ได้จริงๆให้เข้าที่นี่แทน สามารถปลด lock ได้ทั้ง gmail และ google apps
https://accounts.google.com/DisplayUnlockCaptchaV2
Posted by
NJTD
at
4/20/2009 12:20:00 PM
0
comments
SPF = Sender Policy Framework เอาไว้ระบุว่าสามารถส่ง mail ได้จาก server เครื่องไหนบ้างเพื่อป้องกันคนอื่นแอบส่ง email ในนามของ domain เราเอง คือทาง mail server ของผู้รับปลายทางจะสามารถตรวจสอบได้ว่า email ถูกส่งมาจาก mail server ของ domain เราจริงหรือไม่
สำหรับ Gmail แนะนำให้ใช้ค่าดังนี้
v=spf1 include:aspmx.googlemail.com ~all
แต่มีผู้พบข้อผิดพลาดแล้วรอการแก้ไขอยู่ โดย google แนะนำให้ใช้ค่านี้
v=spf1 include:_spf.google.com ~all
เมื่อรวมกับความต้องการที่อาจจะมีการส่ง mail form จาก web server จึงแนะนำให้ใช้ค่านี้แทน
v=spf1 a mx include:aspmx.googlemail.com include:_spf.google.com ~all
โดยที่
a = สามารถส่ง mail ได้จาก server ที่ระบุไว้ใน a record (ก็คือ web server นั่นเอง กรณีทั่วๆไป)
mx = สามารถส่ง mail ได้จาก server ที่ระบุไว้ใน mx record
~all = soft fail คือจะยอมให้ส่งได้ แต่อาจจะไปเข้าที่ spam แทน (สามารถ check ดูได้จาก full mail header)
-all = fail คือจะไม่ยอมให้ส่งเลย
- spf record = คือ record type เป็นชนิด txt ใน dns version ใหม่อาจจะรู้จัก record spf ได้เลย
- ถ้าดูใน dns zone เต็มๆจะเห็นเป็นเช่น example.com. IN TXT "v=spf1 -all"
- mail server ฝั่งรับจะเป็นฝ่าย check spf ว่าจะตัดสินใจรับ mail ที่ส่งมาแบบไหน
Validate SPF
http://www.kitterman.com/spf/validate.html
อ่านเพิ่มเติมได้ที่
http://old.openspf.org/wizard.html
http://www.zytrax.com/books/dns/ch9/spf.html
http://www.hybrid6.com/webgeek/2009/03/google-provides-incorrect-spf-record-info-for-google-apps.php
http://www.labnol.org/internet/authenticate-google-apps-email-with-spf/13877/
Note
- กรณีที่เข้า webmail.xxx.com จากภายในบริษัทไม่ได้ จะต้องไปเพิ่ม cname record ใน dns server ให้เป็น
webmail = ghs.xxx.com แล้วจะเข้าได้
การตรวจสอบ spf record
1. ใช้ nslookup set record type=txt
2. ส่ง blank mail ไปที่ spf-test@openspf.org หรือ check-auth@verifier.port25.com
รอการ reply กลับมา ดีที่ spf check ว่า pass
Posted by
tektip
at
4/19/2009 12:50:00 AM
0
comments
Leave mail on Server จะไม่มีผลเมื่อใช้ POP กับ Gmail
วิธีแก้ก็คือเพิ่ม recent: เข้าไปข้างหน้า username แล้วมันจะสามารถดึง mail ย้อนหลังได้ 30 วัน
แต่ต้องอย่าลืมเลือก enable Leave mail on Server เอาไว้ด้วย
แต่ยังมีข้อเสียคือ มันจะ download mail ที่เราเป็นคนส่งเองกลับมาด้วย
วิธีแก้ใจ outlook ให้สร้าง mail rule แล้วตั้งว่า do not download from server เอาไว้ สำหรับเมลที่ส่งจากตัวเอง
gmail แนะนำให้ใช้ imap แทน เพราะมีข้อดีเช่น สามารถ report spam ได้โดยการย้ายเมล์ไปไว้ใน folder spam แต่ imap ก็ยังมีความไม่สะดวกหลายอย่าง
smtps server = smtp.gmail.com:465
pops server = pop.gmail.com:995
imaps server = imap.gmail.com:993
smtps สำหรับ Outlook 2007 = port 587 TCP Outbound (encryption = TLS)
Posted by
tektip
at
4/07/2009 06:55:00 PM
0
comments
[Boot Loader]
timeout=30
Default=multi(0)disk(0)rdisk(0)partition(1)\Windows
[Operating Systems]
multi(0)disk(0)rdisk(0)partition(1)\Windows="1ST TRY THIS seleccione esto primero" /fastdetect
multi(0)disk(0)rdisk(1)partition(1)\Windows="2ND TRY THIS essayez ceci en deuzieme" /fastdetect
multi(0)disk(0)rdisk(0)partition(2)\Windows="3RD TRY THIS wahlen Sie diesen Third" /fastdetect
multi(0)disk(0)rdisk(1)partition(2)\Windows="4TH TRY THIS selezioni questo fourth" /fastdetect
multi(0)disk(0)rdisk(0)partition(3)\Windows="5TH TRY THIS selecione este fifth" /fastdetect
multi(0)disk(0)rdisk(1)partition(3)\Windows="6TH TRY THIS seleccione este sexto" /fastdetect
multi(0)disk(0)rdisk(0)partition(4)\Windows="7TH TRY THIS essayez ceci en septieme" /fastdetect
multi(0)disk(0)rdisk(1)partition(4)\Windows="8TH TRY THIS wahlen Sie dieses achte" /fastdetect
C:\="9TH TRY THIS selezioni questo nono"
D:\="10TH TRY THIS selecione este decimo"
Posted by
tektip
at
1/14/2009 09:26:00 PM
0
comments