Register a SA Forums Account here!
JOINING THE SA FORUMS WILL REMOVE THIS BIG AD, THE ANNOYING UNDERLINED ADS, AND STUPID INTERSTITIAL ADS!!!

You can: log in, read the tech support FAQ, or request your lost password. This dumb message (and those ads) will appear on every screen until you register! Get rid of this crap by registering your own SA Forums Account and joining roughly 150,000 Goons, for the one-time price of $9.95! We charge money because it costs us money per month for bills, and since we don't believe in showing ads to our users, we try to make the money back through forum registrations.
Farking Bastage
Sep 22, 2007

Who dey think gonna beat dem Bengos!

FuriousB posted:

Try turning on compatibility mode, it probably doesn't like IE 10.

IE10 loving breaks everything

Adbot
ADBOT LOVES YOU

Farking Bastage
Sep 22, 2007

Who dey think gonna beat dem Bengos!
Haven't posted much in here since I jumped over to MSP work during YOTJ, mainly sticking to IRC, but holy loving poo poo at the clusterfuck I discovered today. I figured you guys would appreciate.

We picked up a client who had let their IT guy go over some ethical concerns( mainly reading the owners' email and being a general douche), and brought us in. We got a few passowrds ( which were promptly changed, and no documentation. The first red flag I noticed was static IP's everywhere. Being that this is a small retail outfit with three locations, static IP's on point of sale PC's isn't too uncommon, but everything in the home office was statically assigned too. Including laptops. :gonk:

I hadn't really had time to fully document them when this call came in. " Can't get to the internet " Ok.. their IP is up, and I just got into one of their servers I had a port open on WTF? Turns out there's a third part DNS forwarder running we didn't know about. The IP wasn't anything I could RDP into, but SSH was open. OFC we didn't have a password for that. Anyhoo, after some quality time with nmap, I find a goddamned ESX server I didn't know they had and it's hosting a couple of open DNS virtual appliances. The strange part of that is, they have half a dozen physical servers and every one of them are running 08R2.. double WTF

I pulled the ARP tables up trying to find this thing and the MAC associated with the newly found ESX host's IP is also virtual :stare:

On the guy's desktop PC, I find a disconnected terminal session under his username. Pop in as him, and OMFG ARE YOU GODDAMNED KIDDING ME?!

I present to you.. VM Inception

Hmmm VMWare Workstation running not too uncommon for an IT guy. Wait a sec....maybe he's just learning ESXi



I used the V-sphere client built into VMW to connect to this ESX instance....ok..there's VM's running under that he's just practicing right?



Oh God no.. are you loving SERIOUS?!!!



For those playing the home game, that's the production DNS server. The secondary one was already crapped out, and the primary was not responding at the time I took the call.

It even gets better. THAT COPY OF ESX IS FULLY loving LICENSED!!!!!!!

:suicide:

Farking Bastage
Sep 22, 2007

Who dey think gonna beat dem Bengos!
^^ nope, Their beancounter showed me the invoice. :shepspends:

Farking Bastage
Sep 22, 2007

Who dey think gonna beat dem Bengos!
^^ Thats EXACTLY what this idiot did.

Farking Bastage
Sep 22, 2007

Who dey think gonna beat dem Bengos!
Another fun piece of MSP work. "Keep everything the same(read all my retarded RDP ports) and build me a firewall with dual WAN capability." They wouldn't let me re-do it right :cry:

I just stuffed all that poo poo into a Fortigate 40c for an office that has maybe a dozen people. Their in house IT guy is just a CJ and doesn't know fuckall about networking. RDP gateway/RWW is a hell of a lot safer than having all those goddamned ports open :stare: