@@vitalii.mikhailenko Unfortunately cache on this unit cannot be used with USB drives. Also, a minimum of two SSDs are required for write cache.
@SullysChannel7Ай бұрын
Heads up at 34:20, a threat actor can perform a man-in-the-middle attack and push out malicious software while posing as the WSUS server. I would recommend using SSL/TLS when possible. Otherwise, great video!
@StephenWagnerАй бұрын
Great point! In production, SSL (with a valid cert) should always be used!
@jol166Ай бұрын
❤❤❤
@jonmichael29Ай бұрын
It has to be Rufus 3.16 in order for it to work but it does work
@wezu4972Ай бұрын
Okay, I got it working, but now I have 13k unapproved updates, and I'm wondering if I should do anything with them? I've rejected some obviously unneeded ones like ARM updates or language packs, but I was hoping you would explain it in the video.
@StephenWagnerАй бұрын
Hi, when looking at the view listing updated, do you have "Unapproved" and "Failed or Needed" selected? The number of update should be less.
@wezu4972Ай бұрын
Really like the more in-depth video style, that actually shows how things work in a typical environment, instead of showing how to press buttons in 10 minutes. Hopped onto your channel and was surprised you don't have a lot more videos like that. Would love to see more tutorials like this one from you. Cheers.
@StephenWagnerАй бұрын
I really appreciate the feedback and support. Comments like these push me to make more videos! I'll do my best!!!
@vcp93Ай бұрын
But you're still updating your servers one by one. Not sure how this is any better than using the Server Manager. Someone said that this works when the Server Manager didn't, but how often does that happen? Neat tool.
@danielosrc9825Ай бұрын
Without a code-signing certificate, you cannot publish third-party software updates into WSUS or ConfigMgr. By default, updates in WSUS are from Microsoft and client Windows devices inherently trust updates published by Microsoft.
@monohydrate22 ай бұрын
What RAID type?
@StephenWagner2 ай бұрын
I'm running RAID 5 on this unit
@suhrobrajabov99673 ай бұрын
Very informative, thank you so much for educating us! Just a quick question: What should I study and where should I start to be able to comprehend (like you) such a vast amount of information on drivers, updates, OS, Servers and so on? I think it's very easy to confuse yourself and drawn into IT world and mess up everything in your head if you don't have any "mentor" or someone who could show you the path. I have recently passed my CCNA and it looks like I have to learn a lot more to be able to get into IT.
@StephenWagner3 ай бұрын
Hey there, thanks for the question! The key is to just keep learning and never stop. Always realize there's more people that know more than you, and be prepared to learn from them. Find yourself IT communities like VMUG and others, that you can connect with like minded folks int he industry. We all can't know everything, the key is to focus on what you enjoy, and keep you mind open to other things! :)
@suhrobrajabov99673 ай бұрын
@@StephenWagner Thank you! Appreciated🙏
@MR-vj8dn3 ай бұрын
Most VDI solutions I encounter / have to use are troublesome. I prefer Terminal Server-style setups.
@StephenWagner3 ай бұрын
Unfortunately a lot of organizations self-implemented VDI, or used a partner that didn't have experience, which unfortunately leads to an unsuccessful and/or poor VDI implementation. If implemented properly, VDI provides numerous advantages over RDS, however it all depends on the use-case (some workloads are better for RDS, while some are better for VDI). I appreciate your feedback! :)
@danx4943 ай бұрын
Nice
@danx4943 ай бұрын
yeah the new feature to turn nvme storage into ram is amazing and weirdly enough makes u wonder why now
@StephenWagner3 ай бұрын
Yeah, the tiered memory is an awesome new feature... I think we'll start seeing a lot of new stuff like this soon! 😀
@mattheldstab3 ай бұрын
Love it!
@daneyoung3 ай бұрын
Great work guys!
@theDXT3 ай бұрын
A wild me!
@StephenWagner3 ай бұрын
Appreciate you sitting down with me to chat! Such an awesome event!
@hdfxsts014 ай бұрын
It got a single DDR3 SODIMM slot and an MSATA slot for SSD.
@ahmedel-sharkawy83994 ай бұрын
👍🏾
@Jupiter__001_4 ай бұрын
Cool demo. What was the latency like? I suppose that would probably be the one major roadblock to cloud-gaming (centralised or decentralised); you have the ping between you and the virtual desktop gaming instance, and possibly also the ping to the game server (for a multiplayer game) to contend with. Also, there is a channel called Craft Computing which experimented a few times with using vGPUs for gaming in a homelab setup.
@StephenWagner4 ай бұрын
Thanks! Latency was actually great (I have around 15ms RTT between my condo and where the servers are). And just an FYI, this is more of a PoC and demo of capabilities, cloud-gaming has a way to go, until we're all on fiber! :)
@davocampo15 ай бұрын
Stephen! Question for you - Is there a way to use SSO to sign people into their Work or School accounts in WIn11 automatically? We're trying to build a Win11 gold image to replace Win10. We are using FSLogix to backup profiles and have RoamIdentity turned on. The issue we're facing is its not roaming the work or school account and telling users to verify their account whenever they login to a new VDI session. I just turned RoamIdentity off and am trying to set up Azure AD SSO, but its not signing into work or school accounts automatically and when I log into a new VDI, it throws an error saying the TPM has malfunctioned. - I'm a new SysAdmin, so may have set something up incorrectly. Any help would be greatly appreciated.
@StephenWagner5 ай бұрын
Hello, Yes, Azure SSO is specifically designed to provide a single sign on experience. If you are using SSO with hybrid domain joining and PRT, you need to turn off "Roam Identity". If you're using Seamless SSO with Azure, you can probably leave "Roam Identity" turned on. When you say that you're receiving prompts to log on, is this for Office Activation, Office sign-in, or is to to complete an MFA policy that your Azure tenant has enabled? In regards to your TPM errors, did you properly create your base without a TPM using ADK and WinPE (supported method)? Usually these errors are seen when that process isn't followed. Cheers
@mahdyfouad5 ай бұрын
your mouth is very close to mic sound very sssssss thththth that very bad for headphones users
@claybreland91965 ай бұрын
I see you made notes in Notepad about the network where you specify the names, IPs, and services for each component. Is this an industry standard way of taking notes of a domain or is it a pattern you've come up with? It looks very clean and organized which is why I'm wondering
@StephenWagner5 ай бұрын
Appreciate your comment! :) I don't think there's an industry standard way of taking notes, but it's always good to document both your active deployments, as well as your environments. It's always handy to have notes and documentation because it assists with troubleshooting, emergencies, Backup and DR, etc.
@claybreland91965 ай бұрын
@@StephenWagner Thanks for the reply! That makes sense. I'm using the same style of notetaking in my lab. I honestly didn't know that notepad doesn't save automatically though, learned the hard way haha. Might use notion for the auto-save feature
@alirezapourranjbar76525 ай бұрын
i have been looking for a video like this all over. Thanks. this made my day.
@udirt6 ай бұрын
This is for the type of datacenter where i got those two x3650M5 on a trolley 😅
@satyakirti56106 ай бұрын
Can we deploy the updates to Byos laptops as well,those are having the Windows 10/11 home editions through WSUS?
@StephenWagner6 ай бұрын
To be honest I'm not too sure if the home editions support using WSUS servers. You'd have to test.
@chrisdietz85196 ай бұрын
Well done.
@hamzapuris6 ай бұрын
Great tutorial, easy to follow and understand! Keep up the good work.
@syafiq35436 ай бұрын
so if my wsus server notworking to push update, i can use this method to update? is this something like manual update?
@MikeBeeTV7 ай бұрын
This is another way Synology Fs you. I have a DS1815+ that's died, for a second time. I had an SSD cache on it. I wanted to get my data off of the drives in that NAS but, of course, I couldn't just put the drives into a Linux server and read the RAID array, even though it's claimed that works. I bought a cheap DS423 (non plus mind you) and now my volume is critical because I can't turn off the SSD cache that no longer exists. WTF Synology?! At every point Synology is a fail.
@chijiiloabachie38367 ай бұрын
the best
@avinash00723557 ай бұрын
Thank you so much! Excellent video.
@tonyhall6997 ай бұрын
Great video. Just for reference, the WSUS changed to "Configuration successfully completed" around 13:00.
@jamesdanielelliott7 ай бұрын
You never issued a certificate using the new template, it was issued with the original template.
@kevinkirk31567 ай бұрын
I hate ssl's.
@Minerva___7 ай бұрын
I’ve seen it mentioned that CAWE was designed with Server 2003-2006 in mind and that is now insecure to use it, with people recommending other methods but I just can’t find more detailed information. For internal only SSL certificates, would the CAWE role still be safe to use for Server 2016 and newer?
@sarifudinbaharsah33678 ай бұрын
I'm trying to restore data on C2 to a new NAS, but why is it so slow, please what should I do?
@StephenWagner8 ай бұрын
Hello, this could be due to a number of reasons, such as slow internet, slow disks, etc...
@steveabba84639 ай бұрын
I did not know about this, thanks for the video!!!
@StephenWagner9 ай бұрын
Glad it helped!
@Albert-North9 ай бұрын
Thanks for video. Used it to setup the CA on our domain - but did not see comments about not setting up on a DC in the domain (as those who argued that it should be on a non-domain server that is eventually disconnected from the network): 1) how big of a hassle would it be to move the CA now that it is integrated with (and on) a DC? I see that it has now issued domain certs to all four DC's in our domain. 2) do we need to manually keep track of the certs issued to the DCs or do they auto-renew in 2 years (since they were auto-created); likewise, do I need to keep track of the expiry for the CA - 5 years out - to have the certificate for the CA itself renewed? 3) what happens if the CA server goes down? I guess the certificate must be "self-contained" enough that even if the CA is down, it can continue to function (up until its expiry date). Thanks. Albert (from Kincardine, ON - on the shores of Lake Huron)
@supronoono9 ай бұрын
Nice info
@zijadzikedzehovic62069 ай бұрын
Need to repeat lectures, did not work in Win Ser for long. This advice should advancemy skills. Thy.
@xandrios9 ай бұрын
Thanks for the video, very interesting. I'm very surprised by the Synology performance. 2200MB/s reads on 6 disks means over 350MB/sec per drive. Also the number of IOPS is enormous if you consider that regular HDD drives typically only reach ~200 IOPS each. Did you happen to run the same tests with the NVMe cache enabled on the Synology? Would be interesting to see the IOPS count in that config.
@StephenWagner9 ай бұрын
I'm travelling so can't verify, but these tests were with NVME cache. The NVME cache provided a beautiful boost in both throughput and IOPS.
@rasmus4599 ай бұрын
hey Stephen have you made two videos about Active Directory Domain ? the. I just tried, I have more problems with getting online on both server and client PC
@DanteBasso9 ай бұрын
I have a question, not totally related with your video, but: it's necessary to use AD to use RDS? It's possible to use only the RDS without the Active Directory...
@StephenWagner9 ай бұрын
Hello, I think I've heard of some org's using RDS without AD, however I'm not personally versed in how that would work, or what the configuration would look. I think it also has an effect on what licensing you can use as well.
@rasmus4599 ай бұрын
hi i just installed windows server 2022 64-bit and lvate domain do i need a dhcp server on it so i can get domain on a windows 10 11 computers
@StephenWagner9 ай бұрын
Hello, you can install the DHCP role on your Windows Server to provide DHCP to your network. Using it on your DC, will allow dynamic DNS updates as well!
@rasmus4599 ай бұрын
hi, thank you for your answer, when I try to connect to the domain and write domain, it comes to login, but when I write user and code, it writes An Active Directory Domain Controller for the Domain Could Not be Contacted.@@StephenWagner
@rasmus4599 ай бұрын
An Active Directory Domain Controller for the Domain Could Not be Contacted.I have tried that, but when I try to write it An Active Directory Domain Controller for the Domain Could Not be Contacted.@@StephenWagner
@rasmus4599 ай бұрын
@@StephenWagner when I install active directory and create a domain and I try to be on a dkmane on a windowos prr computer it says can not connect to domain
@StephenWagner9 ай бұрын
@@rasmus459 the computer has to use the AD domain controller for DNS to be visible.
@aolish10 ай бұрын
I had recently bought the "HPE ProLiant MicroServer Gen10 Plus v2" and would like to run Windows Server 2022 Essentials, however MS no longer provides the iso for this and I was wondering if anyone knows how to obtain this? What makes this worse is the Microserver that I have does NOT come with an optical drive. Any help is appreciated.
@StephenWagner10 ай бұрын
Hello, I believe the "Essential Experience" is now a Windows Server Feature and Role that you install after you install the operating system.
@faisaljan388410 ай бұрын
Greatttt
@weneedheros10 ай бұрын
Really good content. Clear and concise explanations.
@mentezari10 ай бұрын
Thank you so much for your tip. One of my 2016 servers would not update through GUI but did through sconfig. Have a great day.
@StephenWagner9 ай бұрын
Glad to hear!
@blessingkagurabadza892110 ай бұрын
Is it possible on server 2022 to configure NAT and DHCP without promoting to DC?
@StephenWagner10 ай бұрын
Hello, you can configure most server roles without promoting to a DC.
@sadrasalahshour10 ай бұрын
Hi there;first I gotta say u rock:) and thank you for ur thorough and informative video. I have a Q though!: right now I'm at deployment configuration for Active directory domain services section and I don't know what address is best or even ok to put in as Root domain name.??!!(bc I don't own any domain) / for more clarification, I am an IT student and I'm just tryin to learn this subject via practicing it on VirtualBox. Could u pls help me with this matter? Tnx.
@StephenWagner10 ай бұрын
Hey there! Glad the video is helping. Normally in a production environment, you would most likely want this to match you internet domain name (unless you had specific reasons to do otherwise). In your case, just pertend you have a company or your own domain and use that. I just wouldn't use one that actually exists.