Don't apologize, I should have noted that finals were in the air.
Thank you for the questions, as it has helped me pin point what i
should be asking and looking for.
Things at work are looking grim but on the up side I was able to fix a
6+ month issue. My GPOs are finally applying correctly, which exposed
many other issues with permissions. If fact that was one of the root
causes, somehow the domain controller was banned from it self. The
RPC/WRM, all replication, windows event logger and DNS services had
massive issues. I never noticed that one of the forward entries in DNS
was the same ip address as our public ip, thus request would come in
but not always out. Replication and sys vol had corrupt data stores,
that was fun fixing via command line and registry editing. Found out
that logging was disable on anything that would have been throwing
errors, grrrr. Once I got RPC/WRM working and deployed correctly I
found how easy it was to log off every one in the domain... Powershell
is soooo powerful, with no "idiot proofing" which reminds me of Linux.
On the up side... I now can make sure everyone is off the network
before trying to run server maintenance. Hehe. To top it all off he
Grand Forks location is able to see, interact, and use/utilize the
domain correctly now. Now if only the tape and glue hold out long
enough to get another server... >:-/
Thank you so much for those questions, they are guiding me in the
right direction. I can already tell that I don't want to move our
quick books database into the cloud, at lest in a cloud that I have to
worry about. :-) I also skipped a beat when I checked our bandwidth to
the general Internet (Grand Forks, Washington, Boston, LA,
Fargo/Moorhead). The fastest speed we get is only 0.6/0.3MBps down/up
and that's when I tested the connection to the ISP, otherwise I cried.
Well, I hope you pass your SANS without problem and I wish you luck on
it and grading, but not as much as what Chris needs for grading. ;-).
Hehe
Save tree, think before you print
On May 11, 2012, at 10:06 AM, Tim Preuss <Tim.Preuss@minnesota.edu> wrote:
Joe,
I apologize for taking so long. The end of semester is busy and now I am working on re-certification with SANS.
As to your question, I do have some questions.
Who has access to my data in the cloud?
Where is my data physically stored? I need to know the legal jurisdiction.
Are my servers virtualized with other people? I might pay more not to share hardware.
Who does backup?
If any data is encrypted, who has the keys?
Where are any encryption keys kept?
What happens if the cloud provider quits being a cloud provider?
How good is the internet pipe between us?
How do I deal with the cloud provider under Denial of Service attack?
What kind of Service Level Agreement can I get for up time from the cloud provider?
This should get you started.
Tim
Tim Preuss
Instructor
Minnesota State Community and Technical College
1900 28th Ave South
Moorhead, MN 56560-4899
tim.preuss@minnesota.edu
218-299-6614 (answering machine)
Joe Colvin 05/01/12 9:16 AM >>>
Hello Chris, Tim, anyone else(?!?!?)
So I need to ask for your advice. To keep this short I'm just going to say that our primary server is on its last leg and we don't have the budget to purchase another one to migrate to. I'm thinking about moving the server to the cloud. The server's roles are AD/DC, File Share, Print Server, Terminal Services, DNS, Fax Server, and our Quick Books Database server. Now I already know that I would need to setup a on site fax server but I would like to move everything else into the cloud as that will be cheaper then leasing a new server.
I have researched this topic and from the what I was able to gather it is better to have a Read Only AD/DC server in the cloud and still keep the writable AD/DC on site. But, I'm wanting to know, what you both think moving everything to the cloud? What are the risks I'm not seeing (I know that having the financial data in the could is a risk but it isn't anything more then how open it is now)?
--
Joseph Colvin
IT Admin/CTO
Tubs of Fun
4021 Main Ave
Fargo, ND 58103
Tel: 701-234-0705
Fax: 701-235-5056