October 04, 2007

How can I configure TCP/IP settings from the Command Prompt?

In order to configure TCP/IP settings such as the IP address, Subnet Mask, Default Gateway, DNS and WINS addresses and many other options you can use Netsh.exe.

Netsh.exe is a command-line scripting utility that allows you to, either locally or remotely, display or modify the network configuration of a computer that is currently running. Netsh.exe also provides a scripting feature that allows you to run a group of commands in batch mode against a specified computer. Netsh.exe can also save a configuration script in a text file for archival purposes or to help you configure other servers.

Netsh.exe is available on Windows 2000, Windows XP and Windows Server 2003.

You can use the Netsh.exe tool to perform the following tasks:

  • Configure interfaces
  • Configure routing protocols
  • Configure filters
  • Configure routes
  • Configure remote access behavior for Windows-based remote access routers that are running the Routing and Remote Access Server (RRAS) Service
  • Display the configuration of a currently running router on any computer
  • Use the scripting feature to run a collection of commands in batch mode against a specified router.

What can we do with Netsh.exe?

With Netsh.exe you can easily view your TCP/IP settings. Type the following command in a Command Prompt window (CMD.EXE):

>netsh interface ip show config

With Netsh.exe, you can easily configure your computer's IP address and other TCP/IP related settings. For example:

The following command configures the interface named Local Area Connection with the static IP address 192.168.0.100, the subnet mask of 255.255.255.0, and a default gateway of 192.168.0.1:

>netsh interface ip set address name="Local Area Connection" static 192.168.0.100 255.255.255.0 192.168.0.1 1

Netsh.exe can be also useful in certain scenarios such as when you have a portable computer that needs to be relocated between 2 or more office locations, while still maintaining a specific and static IP address configuration. With Netsh.exe, you can easily save and restore the appropriate network configuration.

First, connect your portable computer to location #1, and then manually configure the required settings (such as the IP address, Subnet Mask, Default Gateway, DNS and WINS addresses).

Now, you need to export your current IP settings to a text file. Use the following command:

>netsh -c interface dump > c:\location1.txt

When you reach location #2, do the same thing, only keep the new settings to a different file:

>netsh -c interface dump > c:\location2.txt

You can go on with any other location you may need, but we'll keep it simple and only use 2 examples.

Now, whenever you need to quickly import your IP settings and change them between location #1 and location #2, just enter the following command in a Command Prompt window (CMD.EXE):

>netsh -f c:\location1.txt

or

>netsh -f c:\location2.txt

and so on.

You can also use the global EXEC switch instead of -F:

>netsh exec c:\location2.txt

Netsh.exe can also be used to configure your NIC to automatically obtain an IP address from a DHCP server:

>netsh interface ip set address "Local Area Connection" dhcp

Would you like to configure DNS and WINS addresses from the Command Prompt? You can. See this example for DNS:

>netsh interface ip set dns "Local Area Connection" static 192.168.0.200

and this one for WINS:

>netsh interface ip set wins "Local Area Connection" static 192.168.0.200

Or, if you want, you can configure your NIC to dynamically obtain it's DNS settings:

>netsh interface ip set dns "Local Area Connection" dhcp

As you now see, Netsh.exe has many features you might find useful, and that goes beyond saying even without looking into the other valuable options that exist in the command.

October 03, 2007

Keistimewaan Lailatulqadr

Allah Ta'ala telah berfirman di dalam surah Al-Qadr yang bermaksud:
"Sesungguhnya kami telah menurunkan (Al-Quran) pada malam al-Qadr dan apakah jalan yang menyebabkan engkau mengerti (kebesaran) lailatul qadar itu? Lailatul qadar itu lebih baik daripada seribu bulan. Pada malam itu para malaikat dan Jibril turun dengan keizinan tuhan mereka (Allah), untuk setiap urusan. Sejahteralah malam ini hingga terbit fajar".

Kebanyakan ulama' Islam menegaskan bahawa kemungkinan berlakunya lailatul qadar adalah pada salah satu daripada malam kesepuluh terakhir sama ada malam ganjil ataupun malam genap.

Yang tetap berlakunya malam lailatul qadar adalah didalam pengetahuan Allah jua. Sesiapa sahaja yang beribadah di malam hari bulan ramadhan, jika kebetulan dengan malam lailatul qadar, maka dikurniakan ganjaran pahala melebihi ganjaran pahala yang dikurniakan kepada mereka yang beribadah selama seribu bulan atau selama 83 tahun 4 bulan berbanding dengan malam yang lain-lain.

Rasulullah s.a.w. sendiri amat bersungguh-sungguh menghidupkan sepuluh malam terakhir daripada bulan ramadhan bersama-sama ahli keluarganya dengna beribadah, bertadharu', beristighfar dan bermunajat kehadrat Allah, memohon rahmat, keampunan dan keredhaanNya.

Walaupun Rasulullah s.a.w. seorang yang maksum, dijamin terpelihara daripada dosa dan noda bahkan dijamin syurga, namun baginda tetap berjaga malam untuk qiamullail, menahan diri daripada tidur kecuali untuk seketika sahaja. Orang yang tekun beribadah pada 10 malam yang terakhir daripada bulan ramadhan akan mendapat rahmat yang dijanjikan sama ada dapat atau tidak menemui apa-apa tanda. Kerana yang penting adalah sepertimana yang tersebut dalam hadis sohih riwayat Bukhari dan Muslim iaitu:

  • Menghayati malam tersebut dengan ibadah
  • Beriman dengan yakin bahawa malam lailatul qadar itu adalah benar dan dituntut menghayatinya dengan amal ibadah.
  • Amal ibadah itu dikerjakan kerana Allah semata-mata dengan mengharapkan rahmat dan keredhaanNya.

Selain tanda-tanda tersebut, para alim ulama' menyebut bahawa beberapa tanda-tanda lain bila berlaku malam lailatul qadar. Antaranya ialah :

  • Ada yang berkata orang yang menemui malam lailatul qadar akan melihat nur yang terang benderang disegenap tempat hingga keseluruhan ceruk yang gelap gelita.
  • Ada pula menyatakan bahawa kedengaran ucapan salam dan kata-kata yang lain daripada malaikat.
  • Ada juga yang melihat segala benda termasuk pohon-pohon kayu rebah sujud.
  • Ada yang berkata doa permohonannya makbul.

September 30, 2007

Jual nombor telefon

Dalam seminggu at least mesti ada satu orang call dari mana2 punya tele-marketing ntah nak suruh datang ambik macam2 benda. Yang paling utama baucer melancong. Kadang2 sampai dua tiga orang. Menyampah betul aku. Biasa aku tak jawap kalau nombor tak ada dalam phonebook. Lagi-lagi kalau unknown number. Tapi kadang2 vendor pun guna unknown number ni jugak, kalau tak pun head hunter... huhuhu... tak angkat kang.. haaa....melepas la pulak...

Sapa la yang jual number telefon aku ni agaknya. Bank pun satu hal jugak, call suruh pinjam duit kat diorang.. cukup la aku hutang kat korang weh.... letih laaa.....

Ada jugak nak ajak bisnes smart-kiosk, water vending machine, health club... dan macam2 lagi laa....


tensen tesnes...

September 28, 2007

How to Use Group Policy to Set Advanced Settings in Internet Explorer

To customize advanced settings in Internet Explorer, make sure that Group Policy is set to Preference mode. To do this, follow these steps:
1. Open the Group Policy Object Editor snap-in. To do this:
a. Click Start, click Run, type mmc in the Open box, and then click OK.
b. On the File menu, click Add/Remove Snap-in.
c. Click Add.
d. Click Group Policy Object Editor, and then click Add.
e. Click the target Group Policy object (GPO). The default GPO is Local Computer. Click Browse to select the GPO that you want, and then click Finish.
f. Click Close, and then click OK.
2. In the console tree, expand the GPO, expand User Configuration, and then expand Windows Settings.
3. Right-click Internet Explorer Maintenance, and then click Preference Mode.

The Advanced folder appears under Internet Explorer Maintenance in the console tree.
If a policy is already defined, you must click Reset Browser Settings before you can put this policy in Preference mode. When you reset the browser settings, any policy settings that are specified to that Group Policy are reset.

NOTE: Preference mode settings are set by an administrator. However, you can change these settings after the policy is applied (for example, your home-page setting or settings on the Advanced tab). After the policy is applied to a client computer, you can change your home page and advanced settings.

If the administrator does not want users to change the settings, the administrator can apply a restriction by using the Administrative templates in the GPO.

An administrator must also combine GPOs, an organizational unit, a user, or a computer by implementing both a Preference mode and a Maintenance mode GPO

September 27, 2007

Jalan Pintas Ke Taskmanager

Tekan Ctrl+Shift+Esc akan terus ke Task Manager.

September 26, 2007

Balik Kampung




Perjalanan jauh tak ku rasa
Kerna hati ku melonjak sama
Ingin berjumpa sanak saudara
Yang selalu bermain di mata

Nun menghijau gunung ladang dan rimba
Langit nan tinggi bertambah birunya
Deru angin turut sama berlagu
Semuanya bagaikan turut gembira

Balik kampung oh oh...( 3X )
Hati girang
Ho ho... Balik kampung (3X)
Hati girang

Terbayang wajah-wajah yang ku sayang
Satu-satu tersemat di kalbu
Pasti terubat rindu di hati
Menyambut kepulangan ku nanti

*-----------------------------------*

Satu-satunya lagu yang tak ada satu perkataan raya ataupun aidilfitri atau lebaran tapi popular masa raya. Anyway, balik kampung ni memang sinonim dengan raya. Walaupun tak raya orang still balik kampung, tapi kalau time raya, rapidkl la diorg balik. kalau dari penang rapidpenang la ye... rapidjohor belum ada

Tahun ni turn balik kampung aku kat Johor. tapi... skrg ni aku dah jadik anak yatim piatu. First time raya takde ayah aku. Dah 11 kali takde emak aku.. Masa arwah ayah aku ada, klu nak raya ke mana2 pun misti dia nak naik keta aku gak. Kalau aku balik raya ke-2 ke, ke-3 ke.. dia tak raya ke mana la raya pertama tu. Tunggu aku jugak... Anyway, life goes on. Kali terakhir arwah ayah aku naik keta aku, sewaktu perjalanan terakhir dari rumah ke tempat persemadian terakhirnya. Sedih ni....

Nampak gayanya balik rumah nenek aku le. Walaupun nenek tiri, tapi nenek aku superb woooo.... aku nak booking burasak kat nenek aku.. sedap weih.. burasak ni makanan orang bugis yang dibuat masa hari raya. Benda ni nasik yang dibalut dengan daun pisang, lepas tu dikukus. Makan dengan ayam masak kicap pun sedap..... perghhhhhh....

Anak aku yang kecik sekali tak sempat kenal sangat la atuk dia kat kampung. Baru nak masuk 2 tahun, tak kenal sangat.. lagipun aku balik kg dalam 3 ke 4 bulan sekali je. Yang 2 orang tu kenal la.. diorang tau atuk diorang dah tak ada..

oklah.. teremoticon pulak...

September 25, 2007

New Toy




I have a new toy to play with.

Manufacturer: HP
Model: Pavillion tx 1000

Review from Harian Metro.
---------------------------

HP Pavilion tx1000 – Komputer notebook

PENGELUAR: Hewlett-Packard


PERTANYAAN: Hewlett-Packard (Malaysia) Sdn Bhd

LAMAN WEB: www.hp.com.my

TELEFON: 1-800-88-4848

HARGA: Dari RM5,499



PERNAH suatu ketika dulu industri kita dihidangkan dengan komputer notebook yang dipanggil PC Tablet, namun ia kurang popular mungkin disebabkan harga dan trend yang tidak menyeluruh.

Bagaimanapun, pengeluar notebook terkemuka, Hewlett-Packard (HP) tidak menghentikan pengeluaran, sebaliknya terus memperkenalkan notebook tablet baru yang lebih menarik dan diperkemas dengan pelbagai fungsi serta ciri terkini.

Beberapa model dalam siri HP tx1000 diperkenalkan yang mana semuanya berasaskan cip pemproses AMD Turion 64 X2. Ia mungkin tidak dipanggil notebook tablet lagi, tapi notebook yang memiliki ciri tablet.

Kerangkanya nampak lebih kukuh tapi diperbuat dari bahan plastik yang dikatakan lebih ringan untuk memudahkannya dibawa ke mana saja sesuai dengan fungsi serta sasaran jualannya kepada eksekutif/profesional yang sering ke luar pejabat.

Skrin lebar LCD WXGA berukuran 12.1 inci dilengkap dengan teknologi pencerah paparan serta peka sentuhan di atas resolusi paparan 1,280 x 800 piksel.

Ciri peka sentuhannya agak unik selepas diperbaharui oleh HP menerusi teknologi resistif kerana ia tidak lagi hanya perlu menggunakan pen khas untuk menulis atau melakukan sebarang input di atasnya, tapi boleh menggunakan sebarang objek termasuk jari sendiri sebagaimana skrin peka sentuhan yang selalu kita gunakan di atas unit pembantu peribadi digital (PDA).

Skrinnya amat fleksibel yang boleh dipusing sehingga 180 darjah dan boleh diletakkan terus di atas papan kekunci.

Di bahagian tepi kerangka skrin itu pula dilengkapi dengan unit pembaca cap jari sebagai platform sistem keselamatan berasaskan biometrik, begitu juga dengan mikrofon dan kamera web 1.3 megapiksel untuk memudahkan pengguna berinteraksi secara bervideo dengan rakan atau keluarga.

Walaupun nampak kecil, HP Pavilion tx1000 yang beroperasi di atas sistem operasi Vista Home Premium ini dlengkapi papan kekunci bersaiz standard dan mempunyai ruang rehat tangan yang agak luas untuk memudahkan penggunaan.

Pad kawalan kursornya direka bentuk seperti PC notebook HP yang lain dengan kawalan halaman untuk skrol turun/naik terletak di sebelah kanannya.

Sesuai dengan dengan gelarannya PC notebook multimedia, justeru ia bukanlah sekadar PC untuk bekerja, tapi juga untuk hiburan yang menyeluruh sama ada untuk muzik atau video.

Terdapat pemacu cakera DVD R/RW dengan teknologi LightScribe yang boleh juga digunakan untuk membuat label CD. Selain itu ia juga dilengkapi pemacu pembaca kad memori 5 dalam satu yang menyokong kad memori jenis SD, MMC, Memory Stick, Memory Stick Pro dan xD.

Selain dari jek untuk fon kepala dan mikrofon yang terletak di bahagian hadapannya di bawah papan kekunci, terdapat satu lagi jek yang dikenali SPDIF iaitu antaramuka soket HDMI untuk menyalurkan video ke unit pemapar berdefinisi tinggi (HD) termasuk televisyen HD sebagai tatapan bersama keluarga atau rakan.

Untuk memantapkan dan memuaskan lagi tontonan, HP Pavilion tx1000 ini didatangkan dengan sebuah unit kawalan jauh kecil yang boleh digunakan untuk melancarkan terus fungsi multimedia tanpa menghidupkan PC.

Antara fungsinya termasuk melancarkan pemain semula DVD, mepaparkan foto/video, memainkan semula TV dan muzik dari jarak sehingga tiga meter.

Untuk penggunaan yang lama, PC notebook ini agak panas, tapi tidak ada apa yang berlaku, manakala baterinya kecil dan tidak bertahan lama. Bersedialah dengan bateri kedua atau duduk berhampiran dengan punca kuasa ketika menonton video lebih dari dua jam.

Technical Specifications

Processor, operating system and memory
Processor type
tx1020AU: AMD Turion™ 64 X2 Dual-Core Mobile Technology TL-60
• 2.0 GHz, Level 2 cache 1 MB, Up to 1600 MHz system bus running at AC/DC mode 35 Watt
tx1005AU: AMD Turion™ 64 X2 Mobile Technology TL-56
• 1.8 GHz, Level 2 cache 1 MB, Up to 1600 MHz system bus running at AC/DC mode 35 Watt
Operating system installed
Genuine Windows Vista® Home Premium
Standard memory
tx1005AU: 1024 MB
tx1020AU: 2048 MB
Memory type
tx1020AU: DDR2 667 MHz
Memory layout
tx1020AU: (2 x 1024 MB)
tx1005AU: (2 x 512 MB)
Maximum memory
Supports up to 2 GB DDR2 memory
Internal drives
Internal hard disk drive
tx1005AU: 120 GB
tx1020AU: 160 GB
Hard disk controller
SATA Hard Disk Drive
Hard disk drive speed
5400 rpm
Optical drive type
Lightscribe Super Multi DVD Writer (+/-R +/-RW) with Double Layer support
System features
Memory card device
5-in-1 integrated Digital Media Reader for Secure Digital cards, MultiMedia cards, Memory Stick, Memory Stick Pro, or xD Picture cards
Modem
High speed 56K modem
Network interface
Integrated 10/100/1000 Gigabit Ethernet LAN
Wireless capability
Integrated Bluetooth
External I/O ports
1 VGA port; 3 USB 2.0 ports; 1 RJ 11; 1 RJ 45; S-video TV out; 1 Microphone-in; Stereo headphone with SPDIF, Additional headphone jack, Expansion Port for xb3000, 2 Consumer IR
Expansion slots
One ExpressCard/34 slot
Display size
tx1005AU: 12.1" WXGA High-Definition HP BrightView Wide Touchscreen Display
tx1020AU: 12.1” WXGA High-Definition HP BrightView Widescreen Display with Integrated Touch-screen (Pen input optimized)
Display resolution
1280 x 800
Video adapter
NVIDIA® GeForce™ Go 6150
Video RAM
Up to 128 MB shared video memory
Control panel
HP QuickPlay media player software and its dedicated menu controls, music and DVD buttons
Internal audio
3D Sound Blaster Pro compatible sound 16 bit integrated
Speakers and microphone
Altec Lansing® speakers
Keyboard
tx1005AU: Next Generation 12-inch Compact Keyboard
tx1020AU: Next Generation 12-inch compact Keyboard with 8 Quick Launch Buttons
Pointing device
tx1020AU: Touch Pad with On/Off button and 2-way scroll
tx1005AU: Touch Pad with On/Off button and 2-way scroll with 8 Quick Launch Buttons
Power supply type
65 W AC Power Adapter
Webcam
HP Pavilion WebCam with Integrated Microphone
Dimensions / weight / warranty
Weight
2kg - may vary, depending on configuration and components
Dimensions (W x D x H)
30.6 cm (W) x 22.4 cm (L) x 3.13 cm - 3.87 cm (H)
Package dimensions (W x D x H)
415 x 164 x 350 mm

September 24, 2007

Unrecovered recovery

Hari ntah hapa gatal aku, tersilap run sysprep.exe, lepas tu set to factory settings. Tak sempat nak cancel la pulak. Abih aku punya notebook dah jadik macam baru beli. Mujur le partition tambahan tak diformat sekali.. kalau tidak haruuu....

Nak install balik utiliti, oa etc etc... kwah kwah kwah.. padam muko aku...

Kembali

Selepas seminggu aku menjalankan tanggungjawab di utara, aku balik la kat site aku ni haaaa.. mana lagi kalau tak kat Pandan Mewah. Aku ingat masa aku tak ada kat sini, ada la kejadian huru hara ke, rusuhan kaum ke, server down ke..... rupa-rupanya takde mende yang jadi pon...
Ok je apa...

Apa yang kecoh sangat masa aku takde hari tu!!?? Lirek la brader.... ramai lagi orang yang lebih hebat dari aku buleh buat kerja kat sini... apa susah sangat!? Aku takde pun ok apa....

September 20, 2007

Western Dinner




Malam tadi pekena western. Aku dengan Muin menikmati Grilled Lamb Chop, Azli dengan steak dan Jo makan Chicken Chop. Pueh hati la walaupun agak mahal, tapi kambing dia pehhhh... lepas makan, nak jalan pun tak larat. Gambar yg aku ambik memang tak menarik, gelap je.. aku punya vga camera.. flash pun tadak... huhuhuh....

September 19, 2007

Mengalih FSMO role secara paksa

Senario:

Dalam satu AD, ada 2 atau lebih DC dan DC1 merupakan PDC di mana semua FSMO roles terletak di dalamnya.

Peristiwa:
Tiba-tiba, DC1 mengalami kerosakan kritikal sehingga tidak mampu dihidupkan dengan baik. Kalau mampu hidup macam hidup wak segan, mati mak timah.

Akibatnya:
Semua kerja-kerja DC akan dilakukan oleh DC2 tetapi ada maklumat-maklumat penting AD dipercayai oleh sistem berada di DC2 tanpa mengetahui bahawa DC1 berada dalam keadaan koma. Apabila kerja-kerja berkaitan AD dilakukan di DC2, pasti akan ada beberapa pesanan penaja yang dipaparkan di skrin. Antara yang mungkin ialah mengenai global catalog, domain controller tak dapat dihubungi dan sebagainya.

Persoalannya:
Camno nih.. nak buat nama user baru ada 37 orang ni. Pengarah ITD dah bising tu.. janji semalam siap.

Penyelesaiannya:
1. Login masuk ke DC2.
2. Dari start menu-> run, jalankan arahan ini: ntdsutil.exe
3. Sistem akan menunggu arahan seterusnya seperti ini:

ntdsutil: _

4. Masukkan arahan roles dan sistem akan menunggu arahan selanjutnya seperti berikut:

ntdsutil: roles
fsmo maintenance:

5. Seterusnya masukkan arahan connections seperti berikut:

fsmo maintenance: connections
server connections:

6. Selepas daripada itu, masukkan arahan connect to server dc2 seperti berikut:

server connections: connect to server dc2
Binding to server dc2 ...
Connected to server dc2 using credentials of locally logged on user.
server connections:

7. Kemudian turun satu anak tangga dengan menaip arahan q:

server connections: q
fsmo maintenance:

8. Rampas peranan yang dikehendaki dengan memasukkan arahan seize .
Pilihan role adalah seperti berikut:
domain naming master
infrastructure master
PDC
RID master
Schema master

Pilih peranan yang dikehendaki atau kesemuanya untuk dirampas. Contohnya adlah seperti berikut:
fsmo maintenance: seize domain naming master

9. Sistem akan memberi beberapa amaran. Iyekan aja.. kalau tak, tak jadi le...
Sistem juga akan memberitahu bahawa DC1 tak dapat dihubungi kerana di luar kawasan. Memang la sebab DC1 tengah koma.

10. Buat satu persatu sehingga semua peranan dapat dirampas dengan angkuhnya.

11. Sesudah selesai, masukkan arahan q satu demi satu sehingga anda keluar dari arahan ntdsutil.

Saudara sidang pembaca yang dihormati sekalian, begitulah caranya untuk merampas peranan FSMO dan dialihkan ke DC2 yang kita suka. Biarlah DC1 yang tak digemari itu terus koma. Aku sebenarnya tak suka nak paksa-paksa ni, tapi dah server tu tak sudi.. nak buat macam mana kan...

Sekian untuk kali ini. Sehingga berjumpa di lain waktu. Salam hormat pada sidang pembaca dan kasih sayang pada orang tertentu.

Terima kasih.

SGP - Pengujian dan Pentauliahan (II)

Alhamdulillah. Pengujian dan Pentauliahan untuk Kolej Latihan Kejururawatan Sungai Petani dapat dilaksanakan dengan jayanya.

Walaupun ada sedikit sedu dan sedak pada awalnya, dengan kerja sama pihak2 yang berkenaan, semuanya dapat disudahkan dengan baik. Bagaimanapun, kerja2 pendokumenan masih lagi dijalankan sebagai pelengkap kepada kerja-kerja pengujian yang telah dilakukan.

yang penting.. yakin pada apa yang anda tahu, jangan dengar khabar angin...
kalau tidak nanti dapat blue-screen-of-death dan muka hang pun berubah jadi biru...


kwah.. kwah.. kwah...

September 17, 2007

SGP - Pengujian dan Pentauliahan

Minggu ni aku berada di Sg. Petani sekali lagi. Bertolak dari PD dlm kul 10 malam dan sampai ke SGP dalam kul 2. Empat jam Muin drive tu.. orang kata dia bawak laju...

Sampai je kat SGP terus check-in kat Swiss Inn. Lepas tu ronda2 nak cari kedai makan. Kebanyakan dah tutup daaa... Last2 gi kedai mamak. Aku mcam biasa, minum air soya dalam tin.. ehehehe

Ingatkan nak bangun pukul 5 sahur. Siap dah set alarm bunyik jam 5 pagi. Sekali aku kejut Muin, dia tido balik.. aku pun sambung tido la.. eheheh.. sib baik aku dah pulun makan nasik banyak masa buka kat rumah mentua aku semalam. Pehhh.. lauk ayam masak sambal dengan pajeri terung. Air sirap cincau pulak.

Hari ni ingatkan nak terus buat TnC server untuk NTC. Sekali tu network config tak betul lagi, cabut satu kabel terus tak jalan. So, pospon la besok. Aku kena rectify dulu.. ada la benda2 lain yang kena buat fine tune. Ini la first time aku usik server2 ntc ni. Sebelum ni aku tgk2 je.. tak sangka pulak aku yang kena buat TnC... padan muka aku. Kalau aku tau jadi begini, aritu lagi aku dah buat...

September 14, 2007

How to modify NTFS permissions from CLI...?

Ever think of modifying folder permissions in NTFS using CLI? Normally, we need to right-click that particular folder, take Sharing and Security.. than we can modify the permissions thru this GUI. SO, why should we need alternative way to do it? You cannot run that GUI thru login script. Please read further for the answer.

Micro$oft provide Xcacls.exe for this purpose. You need to download it from Microsoft. It is a part of Microsoft Server 2000 Resource Kit.

You can use Xcacls.exe to set all file-system security options that are accessible in Windows Explorer from the command line. Xcacls.exe does this by displaying and modifying the access control lists (ACLs) of files.

Xcacls.exe is especially useful in unattended installations of Windows 2000 Professional or Windows 2000 Server. By using this tool, you can set the initial access rights for folders in which the operating system resides. When you distribute software to servers or workstations, Xcacls.exe also offers one-step protection against deletion of folders or files by users.

Xcacls.exe syntax

xcacls file name [/T] [/E] [/C] [/G user:perm;spec] [/R user] [/P user:perm;spec [...]] [/D user [...]] [/Y]

where file name indicates the name of the file or folder to which the ACL or access control entry (ACE) is typically applied. All standard wildcard characters can be used.

/T recursively walks through the current folder and all of its subfolders, applying the chosen access rights to the matching files or folders.

/E edits the ACL instead of replacing it. For example, only the administrator will have access to the Test.dat file if you run the XCACLS test.dat /G Administrator:F command. All ACEs applied earlier are lost.

/C causes Xcacls.exe to continue if an "access denied" error message occurs. If /C is not specified, Xcacls.exe stops on this error.

/G user:perm;spec grants a user access to the matching file or folder.
• The perm (permission) variable applies the specified access right to files and represents the special file-access-right mask for folders.
The perm variable accepts the following values:
• R Read
• C Change (write)
• F Full Control
• P Change Permissions (special access)
• O Take Ownership (special access)
• X EXecute (special access)
• E REad (Special access)
• W Write (Special access)
• D Delete (Special access)
• The spec (special access) variable applies only to folders and accepts the same values as perm, with the addition of the following special value:• T Not Specified. Sets an ACE for the directory itself without specifying an ACE that is applied to new files created in that directory.

At least one access right has to follow. Entries between a semicolon (;) and T are ignored.

Notes
• The access options for files (for folders, special file and folder access) are identical. For detailed explanations of these options, see the Windows 2000 operating system documentation.
• All other options, which can also be set in Windows Explorer, are subsets of all possible combinations of the basic access rights. Because of this, there are no special options for folder access rights, such as LIST or READ.

/R user revokes all access rights for the specified user.
/P user:perm;spec replaces access rights for user. The rules for specifying perm and spec are the same as for the /G option.
/D user denies user access to the file or directory.
/Y disables confirmation when replacing user access rights. By default, CACLS asks for confirmation. Because of this feature, when CACLS is used in a batch routine, the routine stops responding until the right answer is entered. The /Y option was introduced to avoid this confirmation, so that Xcacls.exe can be used in batch mode.

Use Xcacls.exe to view permissions

You can also use Xcacls.exe to view permissions for a file or folder. For example, type xcacls C:\winnt at the command prompt, and then press ENTER. The following is a typical result: c:\WINNT BUILTIN\Users:R
BUILTIN\Users:(OI)(CI)(IO)(special acccess:)
GENERIC_READ
GENERIC_EXECUTE
BUILTIN\Power Users:C
BUILTIN\Power Users:(OI)(CI)(IO)C
BUILTIN\Administrators:F/
BUILTIN\Administrators:(OI)(CI)(IO)F

NT AUTHORITY\SYSTEM:F
NT AUTHORITY\SYSTEM:(OI)(CI)(IO)F
BUILTIN\Administrators:F

CREATOR OWNER:(OI)(CI)(IO)F


The ACL flags have the following meanings:
• IO: Inherit Only - This flag indicates that this ACE does not apply to the current object.
• CI: Container Inherit - This flag indicates that subordinate containers will inherit this ACE.
• OI: Object Inherit - This flag indicates that subordinate files will inherit the ACE.
• NP: Non-Propagate - This flag indicates that the subordinate object will not propagate the inherited ACE any further. The letter at the end of each line indicates permission.

For example:
• F: Full Control
• C: Change
• W: Write

Xcacls.exe examples
Example 1
Type XCACLS *.* /G administrator:RW /Y at the command prompt, and then press ENTER to replace the ACL of all files and folders in the current folder without scanning subfolders and without confirmation.

Example 2
The ACEs that are added to the folder in this example also inherit ACE for new files that are created in this folder. The command gives muinmd read, write, run, and delete rights on all new files created in this folder, but only read and write permissions on the folder itself.
Type XCACLS *.* /G muinmd:RWED;RW /E at the command prompt, and then press ENTER.

Example 3
The following example grants read and write permissions on a folder without creating an inherit entry for new files. Therefore, in this example, new files that are created in this folder receive no ACE for mahaya. For existing files, an ACE with read permissions is created. Type XCACLS *.* /G mahaya:R;RW /E at the command prompt, and then press ENTER.

NTFS permissions guidelines
The following are guidelines for assigning NTFS permissions:
• Use NTFS permissions to control access to files and folders.
• Assign permissions to groups rather than to individual users.
• NTFS file permissions take priority over NTFS folder permissions.
• Administrators and the owner of a file or folder control which permissions can be set for that object.
• When you change folder permissions, be aware of programs that are installed on the servers.

Programs create their own folders that have the Allow inheritable permissions from parent to propagate to this object setting turned on. If permissions are changed in the parent folder, these changes could create problems in the program.


WARNING: Remember that many files and folders receive their permissions through inheritance. Therefore, when you think you are changing only one folder, you may be changing many more.

September 13, 2007

Selamat menyambut kedatangan Ramadhan 1428.

Ramadhan datang lagi. Syukur Alhamdulillah, dapat kita menikmatinya bersama-sama lagi kali ini. Semoga berjaya meneruskan perjuangan hingga ke hari terakhir.


September 12, 2007

Login tanpa masuk password.. (Windows XP)

Login tanpa masuk password..

Ini tips untuk menskip masuk login screen masa boot computer. Mana la tau, malas nak tekan CTRL+ALT+DEL tu kan.. kalau tak kisah orang lain guna pun ok gak la kan..

Cara pertama: Download TweakUI for XP. Ada utiliti tu kat situ.

Kedua: Takmau donlod menda tu?

1. Klik Start, lepas tu klik Run.

Note: Ingat nama kat atas Start menu tu, nanti hangpa nak guna nama tu.

2.Dekat kekotak Open, type menatang nih: control userpasswords2 dan tekan Enter.

3.Kasi clear kekotak-semak the Users must enter a user name and password to use this computer. Klik OK.

4. Klik kekotak User name, masukkan user name yang kat Step 1. Kalau ada password, kasi bubuh dalam ruang password. Kalau tadak password, bior kosong je.

So, lepas ni boot je terus logon guna nama kat atas nu.

Sekian terima sarkis.

* Klu orang lain nak guna komputer hang, senang2 je dia masuk... fikir-fikirkan...

September 11, 2007

Panduan menangani buruk sangka

Panduan menangani masalah buruk sangka
Bersama Prof Dr Syed Hassan Al Mashoor


DALAM kehidupan seharian, kita tidak dapat mengelakkan diri daripada berinteraksi dengan orang lain, baik di rumah mahupun di luar kecuali seseorang itu memilih untuk bertapa di sebuah gua yang jauh terpencil.

Bagi kita yang sentiasa berdepan dengan orang lain, kita ada pendekatan dan kaedah bagaimana cara terbaik untuk melayan seseorang tetapi bagi individu yang memilih berseorang diri mungkin tidak mempunyai banyak masalah kerana tiada siapa yang perlu dilayan.

Apabila perhubungan antara satu sama lain menjadi mesra, contohnya, antara suami dengan isteri, ayah ibu dengan anak-anak dan majikan dengan pekerja, maka tidak wujud persengketaan dan perselisihan faham.

Namun begitu, sebagai manusia yang mempunyai pelbagai sikap, ada sikap terpuji yang mana seseorang boleh bertolak ansur dan sanggup berkorban demi menjaga keharmonian perhubungan antara satu sama lain dan ada juga mereka yang keras hati dan diselubungi sikap buruk sangka sehingga boleh membawa kepada pertelingkahan merugikan.

Dari perspektif sikap terpuji, seseorang itu mampu mengecapi kejayaan demi kejayaan kerana mudah bermesra, ramah dan mampu memahami kehendak dan keperluan orang lain. Di samping itu, dia juga tahu kelemahan dirinya.

Kesanggupan yang ada pada individu seperti itu untuk membantu dan memberi pertolongan dengan ikhlas sentiasa disanjung dan dihargai orang lain. Justeru, amat beruntung apabila ada orang seperti ini dalam sesebuah keluarga atau institusi.

Bagaimanapun, jika berlaku sebaliknya iaitu seseorang ketua keluarga atau ketua dalam mana-mana institusi mempunyai sikap buruk sangka, maka kemungkinan akan wujud suasana kurang senang antara ahli-ahli keluarga dan juga antara pekerja di institusi berkenaan.

Persekitaran yang tidak menyenangkan ini tidak memberi sebarang faedah kepada semua yang terbabit malah semangat mereka untuk mempertingkatkan kualiti hidup boleh menjadi pudar dan terhakis.

Isunya di sini ialah apakah faktor yang boleh membantu seseorang mengelak daripada mengamalkan sikap buruk sangka.

Sesungguhnya mereka yang tergolong dalam kumpulan ini mempunyai tahap emosi agak rapuh. Mereka mudah melenting walaupun dengan sebab-musabab remeh temeh.

Emosi mereka mudah naik dan turun dalam kerangka masa singkat. Kadangkala
ungkapan kata-kata yang kesat dan tidak seharusnya disebut, terkeluar tanpa banyak memikir akibat dan kesudahannya selepas itu.

Mereka tidak menghiraukan apa yang akan berlaku dan bagi mereka, mereka saja yang betul dan benar, orang yang dimaki hamun memang salah dan patut dibuat begitu. Tidak ada tanda-tanda yang mereka akan meminta maaf atas sikap mereka.
Oleh itu dihuraikan beberapa faktor yang mungkin boleh diamalkan bagi mengelakkan kejadian seperti itu kerana perilaku sebegini amat merugikan diri sendiri serta membuat orang lain berasa kurang senang untuk berdamping dengan individu yang terbabit. .
Pertamanya, jika berlaku sebarang salah faham, perkara penting yang harus dilakukan adalah untuk berunding secara ikhlas dan matang terhadap perkara berkaitan. Tidak ada gunanya apabila seseorang menengking dan menjerit sewaktu hendak berbincang sesuatu.

Perilaku seperti ini tidak membawa sebarang makna kerana mustahil sesuatu dapat dirunding dalam suasana yang tegang seperti ini. Justeru, agak wajar pihak tertuduh memaklumkan bahawa dia tidak dapat berunding dalam suasana agak tegang, mungkin selepas orang terbabit berasa reda sedikit, barulah perbincangan lebih bermakna dapat diadakan.

Sekurang-kurangnya orang yang terbabit boleh nampak kelemahannya dan sanggup membuat sesuatu bagi mengubah keadaan sedia ada.

Keduanya, orang tertuduh perlu memisahkan fakta daripada andaian. Ia tidak seharusnya dipengaruhi pelbagai andaian dan pendapat yang boleh memburukkan lagi keadaan. Dia perlu bersikap adil dan tidak mudah diapi-apikan oleh hasutan.

Tindak balas seperti ini akan menjadikan individu berburuk sangka sedar bahawa tuduhan melulu beliau tidak berasas dan hanya dipengaruhi oleh sikap syak wasangka saja.

Ketiganya, orang yang tertuduh boleh menerima segala tuduhan dengan hati terbuka dan bersedia mencari jalan penyelesaian terbaik. Ini akan membuat orang yang berburuk sangka itu melihat kembali ketidakadilan tuduhannya dan dia akan sedar orang yang dituduh mempunyai sifat terpuji dan pandangan lebih fleksibel, tidak seperti dirinya yang mempunyai pemikiran agak sempit dan rigid.

Faktor dihuraikan berkaitan dengan perilaku dan sikap individu yang mudah dipengaruhi oleh perihal buruk sangka dan bagaimana individu tertuduh boleh menangkis tuduhan liar yang dilemparkan kepadanya.

Dalam bidang perubatan psikologi, sikap buruk sangka boleh dilihat dari pelbagai peringkat, sama ada tidak serius atau serius.

Tahap tidak serius bermaksud dengan penjelasan saja, orang terbabit boleh menerima kenyataan dan cuba mengamal perilaku dan sikap yang lebih menyenangkan.

Bagi tahap serius, latar belakang, personaliti dan kestabilan mental individu berkaitan perlu dinilai secara terperinci untuk memastikan dia tidak mengalami sebarang gangguan mental yang serius seperti depresi, gangguan delusi paranoid, skizofrenia dan mania.

Jika ada bukti bahawa individu itu mengalami gangguan mental serius, dia memerlukan rawatan ubat-ubatan khusus bagi mengawal dan memulihkan semula kestabilan mentalnya.

Prof Dr S Hassan Ahmad.
hassan@fhs.unimas.my

September 06, 2007

Incident a.k.a. Accident

Pagi tadi burn duit aku RM130.00.. huhuhuu.. sebabnya kemalangan kecik akibat kelalaian aku sendiri. Masa reverse tak tengok betul2, last2 gesel dengan kereta orang. Padan muko eden... hehehehe...

Aritu pulak, NCD kereta aku yang dah sampai 55% tu burn jugak. Pasal kelalaian orang lain pulak tu, tapi aku didapati bersalah. Insurans yang patutnya bayar dalam RM700 lebih je, dah kena sampai RM1400++... huhuhuhu...

Skrg ni, wahab pun masih kat bengkel lagi. Aku dah bayar kat Norsam RM400. Tapi throttle body tu dekat RM500. Besok ke lusa kena ambik wahab. Duit lagi.... huhuhuhuhu....

Kena buat loan Petronas lagi la ni....

September 05, 2007

Permata




Permata (Untuk Isteri Ku (1))

Telah ku siapkan satu daerah paling sunyi
Dalam hati ini untuk kau isi sebagai isteri
Untuk kau penuhi dengan kemuliaan seorang wanita
Untuk kau beri erti dengan kelembutan
Untuk kau hargai dengan kasih sayang

Ku ingin kau jadi wanita mulia
Yang tahu harga budi dan hati
Seorang lelaki bernama suami

Kerana engkau isteri
Ku ingin kau mengerti bahawa hidup ini
Tak semudah yang kita janjikan
Yang kita janjikan
Kerana kau isteriku

* Lagu Kopratasa

Configure DHCP scope usng CLI..

How to add and configure dhcp scope into dhcp server using cli?

Scenario:
DHCP server ip address: 192.168.201.1
Scope address range: 192.168.202.1 until 192.168.202.250 with subnet 255.255.255.0
Scope name: Level2
Exclusion: 192.168.202.1 - 192.168.202.10
Gateway: 192.168.202.254

Commands:

netsh dhcp server 192.168.201.1 add scope 192.168.202.0 255.255.255.0 Level2 Scope-Level2
netsh dhcp server 192.168.201.1 scope 192.168.202.0 add iprange 192.168.202.1 192.168.202.250
netsh dhcp server 192.168.201.1 scope 192.168.202.0 add excluderange 192.168.202.1 192.168.202.10
netsh dhcp server 192.168.201.1 scope 192.168.202.0 set optionvalue 003 IPADDRESS 192.168.202.254
netsh dhcp server 192.168.201.1 scope 192.168.202.0 set state 1

// you are done.

It is useful if you have more than one dhcp server for redundancy.

Mission Accomplish

Alhamdulillah. Misi ke SGP tercapai. Objektif serampang dua mata aku berjaya dilaksanakan kedua-duanya.

Yang pertama: SYSTEM-FAT telah di ACCEPT dengan jayanya. Di samping itu secara tak langsung, RAC untuk AMP pun settle.

Yang kedua: Permohonan aku telah di ACCEPT juga. Permohonan apa ye....??? kwang.. kwang.. kwang... Setelah sekian lama aku menanti, akhirnya aku mendapat jawapan yang pasti dan meyakinkan. Terima kasih kepada 'pihak' yang berkenaan... peace!! :)

Jadi, banyak gumbiralah ana punya hati ini hari.

September 04, 2007

Buah hati...



Dah lama tak otstation. Hari ni baru masuk hari kedua aku kat SGP. Dah dua hari tak jumpa buah hati aku yang empat orang tu... mujurlah aku tak keseorangan kat sini... (kuang.. kuang.. kuang..)
Inilah yang dikatakan pengorbanan. Untuk mencari rezeki yang halal.
Sayangilah orang yang menyayangi anda. Kebahagiaan adalah lebih indah jika dikongsi bersama.


September 03, 2007

Merdeka!




Merdeka!

Pada 31 Ogos 2007, genaplah umur kemerdekaan negara Malaysia 50 tahun. Alhamdulillah, kita masih berjaya mengekalkan kemerdekaan ini. Sebesar mana atau sekecil mana pun sumbangan kita, semua memain peranan untuk mengekalkan kemerdekaan, keharmonian dan segala2 kenikmatan yang dikurniakan Tuhan ini.

Buat pertama kali dalam hidup aku, aku berada di luar rumah pada malam ambang kemerdekaan. Tempat yang popular pulak tu.. kat mana yek...??

aku berada di KLCC sejak jam 11.00 malam lagi pada 30 Ogos 2007, hinggalah sampai jam 12:30 malam. Tapi bukan tujuan aku nak berlazat2 kat situ, aku menunggu isteri aku yang sedang berkerja menyumbang ke arah kemajuan negara!

Dari pemerhatian aku sepanjang kat situ, rakyat dari berbagai lapisan umur dan latar belakang datang berbondong-bondong datang ke KLCC. Majoriti Melayu! Yang bestnya, setiap selang 15 minit, ada pengumuman dari pembesar suara KLCC, "Pihak pengurusan KLCC mengumumkan bahawa tiada pertunjukan bunga api dan konsert akan diadakan di taman KLCC pada malam ini. Harap maklum". Maka berbondong-bondonglah pulak diorg yang tengah menunggu sesuatu kat KLCC tu beramai-ramai keluar ke atas jalan menuju ke Dataran Merdeka kot.. aku tak tanya pulak diorang nak gi mana. Dalam masa yang sama, ada lagi yang baru sampai ntah dari mana memenuhi kawasan yang dikosongkan orang2 yang sampai awal tadi... setiap kali ada pengumuman, suasana sama berulang... Tapi ada juga yang saja2 lepak kat situ, tak gerak gi mana2 pun... termasuklah aku.

Sewaktu sampai jam 12 tgh malam, pihak KLCC mengotakan janjinya. Tak ada apa2 yang berlaku. Tiada countdown, tiada bunga api, tiada lagu negaraku.... Tetiba dari sebelah kawasan ascot ke belah2 beach tu, ada la diorang main bunga api. Bukan yang besar tu, ni yang kecik macam masa raya tu je. Jadilah.. menceriakan suasana. Kejap je pun.. dalam tak sampai 10 ketul. Time tu, aku pun hantar sms merdeka pada wife aku. My wife call aku balik, "Nak balik la ni. Kejap lagi turun...".

Wife aku pun turun dalam kul 12.20 kot. On the way balik, aku lalu jalan Tun Razak, ikut jambatan yang bersambung dng AKLEH, ramai betul orang lepak atas jambatan tu. Nak masuk jalan Mahameru, ada lagi orang lepak tepi jalan ramai2. Ada yang siap dengan kamera canggih dan tripod! Nak apa? Ambik gambar bunga api?? Tak ada la... kan malam tu malam Jumaat... Korang datang la balik besok gi Stadium Merdeka. Lepas ambik anak2 aku kat rumah mentua aku, terus balik rumah sampai dalam kul 2.00 pagi.

Masa tu baru betul-betul MERDEKA!

August 29, 2007

Modify AD object properties thru CLI

Modify AD object properties thru CLI

We can change AD object properties thru cli. It is necessary if we need to modify the properties of a multiple objects. If you use gui, you need to click the object, select the properties, select the respective tab etc. etc...

Anyway, windows has a command to make it easy. Some of the commands are listed below:

dsadd /? - help for adding objects.
dsget /? - help for displaying objects.
dsmod /? - help for modifying objects.
dsmove /? - help for moving objects.
dsquery /? - help for finding objects matching search criteria.
dsrm /? - help for deleting objects.

I would like to use one of it as an example. For the rest, you need to explore it yourself.

I want to change a password of ahmad to become "abcdef1234" and set it to be required to change at the next logon. ahmad is under OU: manager, and its domain is shazmi.blogspot.com.my

the syntax is:

dsmod user user_dn -pwd abcdef1234 -mustchpwd yes

the command is:


dsmod user "CN=ahmad,OU=manager,DC=shazmi,DC=blogspot,DC=com,DC=my" -pwd abcdef1234 -mustchpwd yes

please make sure that password never expires are not enable. Otherwise, it won't work. anyway you can add -pwdneverexpires no at the end of this command.

If you want to modify properties of multiple user (eg: ahmad under OU Manager and asamaliza under OU Engineer), you can issue this command:


dsmod user "CN=ahmad,OU=manager,DC=shazmi,DC=blogspot,DC=com,DC=my" "CN=asamaliza,OU=engineer,DC=shazmi,DC=blogspot,DC=com,DC=my"-pwd abcdef1234 -mustchpwd yes

But, how if you want to modify a properties of 100 users??

batch file can help you out....





August 21, 2007

hero

Hero

Apabila membaca akhbar harian pagi ini, antara peristiwa yang aku fikir agak menarik adalah kisah seorang pemandu awam yang bersama-sama dengan anggota polis mengejar penjenayah sehingga berjaya memberkas penjenayah terbabit.

Yang agak merbahaya pada pemikiran aku yang agak pesimis; rupa hensem Pakcik Zulkifli terpampang di akhbar dan television. Mungkinkah ada rakan-rakan penjenayah terbabit yang akan membalas dendam?? Tak siapa yang tahu kecuali mereka sendiri...

Ini antara kisah hero yang berjaya. Bagaimana dengan kisah hero2 sebelum ini yang gugur...?? Bagaimana keluarga mereka...??

Kisah ini juga mengingatkan aku pada diri aku sendiri yang cuba menjadi hero suatu ketika dahulu. Dah lebih sepuluh tahun. Tarikh pun tak ingat.. tapi aku rasa dalam tahun 1995 ke 1996 kot.

Malam tu macam biasa aku makan malam kat gerai Abang Amir kat hujung lorong tempat aku tinggal. Kalau tak silap Jalan 1/18 Taman Universiti Indah, Seri Kembangan. Ingat2 lupa...

Tengah aku menikmati mi sup, aku perasan kat simpang lebih kurang 100 meter dari gerai tu, ada satu motor panther dengan dua orang menunggangnya menghampiri seorang perempuan cina yang sedang berjalan sambil bertanyakan sesuatu. Tanya rumah la kot.. tak tau jalan...

Tiba-tiba aku tengok yang sorang tu turun, macam bergelut dengan pompuan tu. Tak berapa nampak apa yg jadi, maklumlah.. malam, lampu jalan je yang ada...pompuan tu pun jerit... aku tak paham butir bicaranya.. so, semua yang kat gerai tu pun tengok la situ... sambil menimbulkan pertanyaan sesama sendiri.. 'apahal tu?'.. 'gaduh kot...!'... 

Lepas tu, motor tu pun pecut... bedezup peginya... aku dengan spontan start moto aku (suzuki gamma 150 - power tak??).. terus gi kat makcik tu..."apahal? apahal?", aku tanya... "Itu olang jahat. Lia sula angkat saya punya lantai.. ala palang", jawab makcik tu. "manyak kuat aaa... kasi angkat lantai, ala palang pulak...!!", hehehe.. bukan aaa... dia kata "rantai sudah kena ragut, orang jahat tu ada parang". 

Aku dengan tak pakai helmet bedezup pi arah mat moto dua ekor tadi lari... semangat berkobar2 nak jadi hero. Sampai jalan turun bukit dari Taman U arah ke Seri Kembangan, aku rasa aku dah dapat moto tu. laju kan aku bawak moto?? Bukan aaa... diorang lari tak laju, mana diorang tau ada orang nak follow. Sambil aku follow tu, aku fikir strategi aku nak jadi hero; tahan diorang macam kaber hero kaber zero? aku takde power macam tu. tendang tayar depan? kalau termiss.. aku yang tergolek.. ikut sampai rumah diorang? lepas tu diorang ada parang.. aku ada apa?? pistol air je.... huhuhu.. last2 sampai je kilang artwright kat selekoh bawah tu, aku ingat2 nombo moto... patah balik naik atas... jumpa balik auntie tadi masih lagi trauma kat simpang tu (dengan harapan aku bawak balik rantai dia kot!! rantai moto aku ada la, rantai tembaga tu).. aku bagi je nombor moto tadi.. kata kat dia "tak dapat kejar la auntie.. diorang laju, dapat nombor ni je.. itupun kalau nak report polis le".

Aku pun pegi balik kat kedai abang amir, ngabihkan mi sup yang dah sejuk. Jadi la citer kejap kat gerai tu malam tu... 

Pakcik Zulkifli kejar sama-sama dengan polis, so dia tak payah fikir risiko kena lawan dengan penjenayah tu sorang2. Kalaupun pakcik ni ada isi, sekali penjahat tu keluar pistol betul... mau silat senteng ke, silat pulut ke.. kuntau ke... susah gak nak lawan...

Aku rasa, memikirkan risiko yang bakal ditanggung menyebabkan ramai orang tak mau jadi hero... melainkan kalu penjenayah tu mat pet yang memang dah tak larat, sekali jentik kat hidung terus jadik michael jackson. Pasal tu banyak kes mat pet mencurik, kantui.. kena belasah lebih kurang je dah padam... tak pasal2 jadi pembunuh tanpa niat... huhuhu..

ITIL

Ever heard of ITIL? If you are familiar with java, you may hear if often.... :) I mean if you are javanese.. or know javanese language... hehehe.. I don't know what does it means in javanese, but I've heard it when I was a child.

Anyway, here is the definition of ITIL which I digged from somewhere:

The ITIL (Information Technology Infrastructure Library) is a globally recognized collection of best practices for information technology (IT) service management (ITSM). The United Kingdom's Central Computer and Telecommunications Agency (CCTA) created the ITIL in response to growing dependence on information technology for meeting business needs and goals. The ITIL provides businesses with a customizable framework of best practices to achieve quality service and overcome difficulties associated with the growth of IT systems. Hewlett-Packard and Microsoft are two businesses that use ITIL as part of their own best practices frameworks.

The ITIL is organized into "sets" of texts which are defined by related functions: service support, service delivery, managerial, software support, computer operations, security management and environmental. In addition to texts, which can be purchased online, ITIL services and products include training, qualifications, software tools and user groups such as the IT Service Management Forum (itSMF).

While owned by the CCTA since the mid-1980s, the ITIL is currently maintained and developed by The National Exam Institute for Informatics (EXIN), a non-proprietary and non-profit organization based in the Netherlands.


You may get further information from this link: http://en.wikipedia.org/wiki/ITIL

August 17, 2007

Kesetiaan...

16 Ogos 2007. Genap 5 tahun aku berkhidmat dengan syarikat aku bekerja sekarang. Antara yang paling lama aku pernah bekerja. Sepanjang 5 tahun, macam-macam pengalaman dan pengajaran yang aku dapat. Antara ilmu yang aku dapat adalah dari aspek teknikal, politik, manusia, sahabat, lawan, emosi, stress, plan, pengurusan (manusia dan bukan manusia), kasih dan sayang (kuang.. kuang.. kuang..), benci, dan macam-macam lagi.

Berbagai jenis manusia juga yang aku jumpa masuk dan keluar dari tempat ini. Ada yang baik, ada yang kurang baik, ada yang tak berapa baik... dan aku juga jumpa yang sangat baik....

Lima tahun kira lama jugak kan...?? aku sekarang ni kalau tak silap no. 5 paling lama dalam kompeni ni. Kalau aku setia kat sini sampai taun depan, silap2 jadi no. 2 ke 3 ke, sebab yang lebih otai dari aku pun macam nak keluar je.... hmmmm...orang lama dan baru masuk dan keluar silih berganti.. ada gak yang dah keluar, masuk balik!! hebat kan... ada yang dikeluarkan, ada yang terkeluar dan ada yang keluar sendiri... aku....?? Kalau panjang jodoh, ada la lagi...

Anyway, aku akan cuba habiskan amanah yang diberikan pada aku at least satu site. Site aku skrg ni le, AMP.... heheheh.. aku start dari mula takde apa-apa sampai lah hand-over pada client nanti. Kalau boleh la.. kalau tak boleh.. nak buat macam mana.. takde rezeki kat sini... :)

huhuhu.. semalam kompeni isteri aku dah declare berapa bulan bonus diorang dapat taun ni... lazat.. lazat... kami di sini...?? nasib baik ada gaji...

August 16, 2007

Aku juga ada FAT







Separa MERDEKA.. dah lepas FAT, next week buleh cuti panjang... huhuhuh

FAT for 34 Intel Servers, 8 Fujitsu Servers, one EVA400 and One MSL6000 in less then 5 hours...

special thanks to cikeasy for assisting me to expedite all the processes... my Superior Superboss Mr. Zulazman (ada macam kipas tak??), and also my other team members Syed Edi, Nazri, Asri, Muin, Asamaliza, Norsalina, Normala, Al-Ghazali, Raznul Asri, Fazry, Imran, Solehin.. sapa lagi yang tertinggal..?? macam menang anugerah je...

I am impressed.... :))

Isu yang tinggal, workstations inventory... huhuhuhuhu... headache.. walaupun tiba2 ramai gadis2 datang membantu, aku takde plan untuk diorang...

tampi macam biasa.. for me... no plan is a part of the plan... ;)

August 13, 2007

Middle Ring Road - KL

If I say MRR2 or MIddle Ring Road 2, I beleive that most of Klang Valley road users will know where it is, or at least ever heard of it. 

How about Middle Ring Road 1? I beleive that most of us will blank a bit if somebody ask us of it. Is it exist?

I guess that MRR1 is a connection of most busiest road in KL. It is Jalan Tun Razak, Jalan Mahameru, Jalan Istana and back to Jalan Tun Razak. Am i right?? please correct me if I am wrong...

August 06, 2007

Fish-MO

What are the FSMO Roles in Active Directory?

Windows 2000/2003 Multi-Master Model
A multi-master enabled database, such as the Active Directory, provides the flexibility of allowing changes to occur at any DC in the enterprise, but it also introduces the possibility of conflicts that can potentially lead to problems once the data is replicated to the rest of the enterprise. One way Windows 2000/2003 deals with conflicting updates is by having a conflict resolution algorithm handle discrepancies in values by resolving to the DC to which changes were written last (that is, "the last writer wins"), while discarding the changes in all other DCs. Although this resolution method may be acceptable in some cases, there are times when conflicts are just too difficult to resolve using the "last writer wins" approach. In such cases, it is best to prevent the conflict from occurring rather than to try to resolve it after the fact. 

For certain types of changes, Windows 2000/2003 incorporates methods to prevent conflicting Active Directory updates from occurring. 

Windows 2000/2003 Single-Master Model
To prevent conflicting updates in Windows 2000/2003, the Active Directory performs updates to certain objects in a single-master fashion. 

In a single-master model, only one DC in the entire directory is allowed to process updates. This is similar to the role given to a primary domain controller (PDC) in earlier versions of Windows (such as Microsoft Windows NT 4.0), in which the PDC is responsible for processing all updates in a given domain. 

In a forest, there are five FSMO roles that are assigned to one or more domain controllers. The five FSMO roles are: 

Schema Master: 

The schema master domain controller controls all updates and modifications to the schema. Once the Schema update is complete, it is replicated from the schema master to all other DCs in the directory. To update the schema of a forest, you must have access to the schema master. There can be only one schema master in the whole forest. 

Domain naming master: 

The domain naming master domain controller controls the addition or removal of domains in the forest. This DC is the only one that can add or remove a domain from the directory. It can also add or remove cross references to domains in external directories. There can be only one domain naming master in the whole forest. 

Infrastructure Master: 

When an object in one domain is referenced by another object in another domain, it represents the reference by the GUID, the SID (for references to security principals), and the DN of the object being referenced. The infrastructure FSMO role holder is the DC responsible for updating an object's SID and distinguished name in a cross-domain object reference. At any one time, there can be only one domain controller acting as the infrastructure master in each domain. 

Note: The Infrastructure Master (IM) role should be held by a domain controller that is not a Global Catalog server (GC). If the Infrastructure Master runs on a Global Catalog server it will stop updating object information because it does not contain any references to objects that it does not hold. This is because a Global Catalog server holds a partial replica of every object in the forest. As a result, cross-domain object references in that domain will not be updated and a warning to that effect will be logged on that DC's event log. If all the domain controllers in a domain also host the global catalog, all the domain controllers have the current data, and it is not important which domain controller holds the infrastructure master role.

Relative ID (RID) Master: 

The RID master is responsible for processing RID pool requests from all domain controllers in a particular domain. When a DC creates a security principal object such as a user or group, it attaches a unique Security ID (SID) to the object. This SID consists of a domain SID (the same for all SIDs created in a domain), and a relative ID (RID) that is unique for each security principal SID created in a domain.  Each DC in a domain is allocated a pool of RIDs that it is allowed to assign to the security principals it creates. When a DC's allocated RID pool falls below a threshold, that DC issues a request for additional RIDs to the domain's RID master. The domain RID master responds to the request by retrieving RIDs from the domain's unallocated RID pool and assigns them to the pool of the requesting DC. At any one time, there can be only one domain controller acting as the RID master in the domain. 

PDC Emulator: 

The PDC emulator is necessary to synchronize time in an enterprise. Windows 2000/2003 includes the W32Time (Windows Time) time service that is required by the Kerberos authentication protocol. All Windows 2000/2003-based computers within an enterprise use a common time. The purpose of the time service is to ensure that the Windows Time service uses a hierarchical relationship that controls authority and does not permit loops to ensure appropriate common time usage.

The PDC emulator of a domain is authoritative for the domain. The PDC emulator at the root of the forest becomes authoritative for the enterprise, and should be configured to gather the time from an external source. All PDC FSMO role holders follow the hierarchy of domains in the selection of their in-bound time partner. 

In a Windows 2000/2003 domain, the PDC emulator role holder retains the following functions: 

Password changes performed by other DCs in the domain are replicated preferentially to the PDC emulator.

Authentication failures that occur at a given DC in a domain because of an incorrect password are forwarded to the PDC emulator before a bad password failure message is reported to the user. 

Account lockout is processed on the PDC emulator. 

Editing or creation of Group Policy Objects (GPO) is always done from the GPO copy found in the PDC Emulator's SYSVOL share, unless configured not to do so by the administrator.

The PDC emulator performs all of the functionality that a Microsoft Windows NT 4.0 Server-based PDC or earlier PDC performs for Windows NT 4.0-based or earlier clients. 

This part of the PDC emulator role becomes unnecessary when all workstations, member servers, and domain controllers that are running Windows NT 4.0 or earlier are all upgraded to Windows 2000/2003. The PDC emulator still performs the other functions as described in a Windows 2000/2003 environment. 

At any one time, there can be only one domain controller acting as the PDC emulator master in each domain in the forest. 

anyway.. FSMO stand for what??

Operasi Guru Bujang Boleh-berubah... :p

FAT vs NTFS

A file system is a method for storing and organizing computer files and the data they contain to make it easy to find and access them. FAT is the file system used in the earlier stage of Microsoft's OS (MS-Dos, Windows 3.11, Windows 95, 98) which was replaced by NTFS.

FAT(File Allocation Table) is a file system used by MS-DOS and other Windows Operating System. It is a system in which Windows stores information about each file in the File Allocation Table, so that it can retrieve later.

NTFS (New Teknologi File System) is an advanced file system that provides performance, security, reliability, and advanced features that are not found in any version of FAT.

The Benefits of NTFS:

Support for large hard drives
Support for large file sizes
Simple management of single disk partitions
Improved performance

Other Features of NTFS:

Security and access control
Distributed link tracking
Hard links for files
Symbolic links for directories
More efficient context indexing
File compression
File encryption
Volume shadow copy backup
Flexible metadata support for attributes, properties, and streams
Ability to mount a local drive to a folder on an NTFS volume

Considering the benefits and features of NTFS, it is wiser to consider NTFS.

So, How to Convert FAT to NTFS?

Note: This solution will not affect any data stored in the partition while converting but I advice you to have a backup. And after you convert to NTFS, you cannot convert back to FAT.

Go to Command prompt (Start -> All Programs -> Accessories -> Command Prompt)
Type the following in the command prompt
Convert x: /fs:ntfs
Where x€™ represents the drive which you want to covert.

In case if you want to convert the partition that is currently in use, you will not be able to convert and you can schedule the task when you restart the computer. This may be the scenario if you are trying to the convert the partition where your Windows is located.

July 19, 2007

Cannot run executable file from shared folder if login thru TS

I've check all the permission and security setting for that particular file (*.exe,*.msi, *.bat, *.cmd..etc), and found out that even everyone has a full control of it, but I cannot execute the file. I tried to map the drive, the result still same. -ve

Finally, I discover that this problem is because of Internet Explorer Enhanced Security (IEES) Configuration. So, I just remove it and the problem solved.

July 17, 2007

Enable Terminal Service from backdoor

Forgot to enable terminal service of Windows Server 2003? Do it remotely.. no need to come into freezing server room.. or maybe too far to attend..

limitation: 
you need at least one server RDP enable within the domain to do this...(eg. pdc01).
applicable to Windows Server 2003

run regedit.exe or regedt32.exe from the above example (pdc01).

go to File->Connect Network Registery...

Choose the server you want to enable rdp... eg. pdc03
go to ServerName\HKLM\System\CurrentControlSet\Control\TerminalServer
open fDenyTSConnections -> change REG_DWORD value from "1" to "0".

Close Registry Editor.

You are done.

Now, try to remote desktop pdc03

July 12, 2007

Open System Interconnection (OSI) Layers

The OSI, or Open System Interconnection, model defines a networking framework for implementing protocols in seven layers. Control is passed from one layer to the next, starting at the application layer in one station, and proceeding to the bottom layer, over the channel to the next station and back up the hierarchy.

Application(Layer 7)
This layer supports application and end-user processes. Communication partners are identified, quality of service is identified, user authentication and privacy are considered, and any constraints on data syntax are identified. Everything at this layer is application-specific. This layer provides application services for file transfers, e-mail, and other network software services. Telnet and FTP are applications that exist entirely in the application level. Tiered application architectures are part of this layer.

Presentation(Layer 6)
This layer provides independence from differences in data representation (e.g., encryption) by translating from application to network format, and vice versa. The presentation layer works to transform data into the form that the application layer can accept. This layer formats and encrypts data to be sent across a network, providing freedom from compatibility problems. It is sometimes called the syntax layer.

Session(Layer 5)
This layer establishes, manages and terminates connections between applications. The session layer sets up, coordinates, and terminates conversations, exchanges, and dialogues between the applications at each end. It deals with session and connection coordination.

Transport(Layer 4)
This layer provides transparent transfer of data between end systems, or hosts, and is responsible for end-to-end error recovery and flow control. It ensures complete data transfer.

Network(Layer 3)
This layer provides switching and routing technologies, creating logical paths, known as virtual circuits, for transmitting data from node to node. Routing and forwarding are functions of this layer, as well as addressing, internetworking, error handling, congestion control and packet sequencing.

Data Link(Layer 2)
At this layer, data packets are encoded and decoded into bits. It furnishes transmission protocol knowledge and management and handles errors in the physical layer, flow control and frame synchronization. The data link layer is divided into two sublayers: The Media Access Control (MAC) layer and the Logical Link Control (LLC) layer. The MAC sublayer controls how a computer on the network gains access to the data and permission to transmit it. The LLC layer controls frame synchronization, flow control and error checking.

Physical(Layer 1)
This layer conveys the bit stream - electrical impulse, light or radio signal -- through the network at the electrical and mechanical level. It provides the hardware means of sending and receiving data on a carrier, including defining cables, cards and physical aspects. Fast Ethernet, RS232, and ATM are protocols with physical layer components.

Now... which layer are you...??

Shut down Oracle database..

[root@db01]# su - oracleSun Microsystems Inc. SunOS 5.9 Generic May 2002

/* stop the listener */
[oracle@db01]$ lsnrctl stop
LSNRCTL for Solaris: Version 9.2.0.5.0 - Production on 12-JUL-2007 14:39:08
Copyright (c) 1991, 2002, Oracle Corporation. All rights reserved.
Connecting to (DESCRIPTION=(ADDRESS=(PROTOCOL=TCP)(HOST=db01)(PORT=1521)))The command completed successfully

/* connect to database as SYSDBA */
[oracle@db01]$ sqlplus '/as SYSDBA'
SQL*Plus: Release 9.2.0.5.0 - Production on Thu Jul 12 14:41:50 2007
Copyright (c) 1982, 2002, Oracle Corporation. All rights reserved.
Connected to:Oracle9i Enterprise Edition Release 9.2.0.5.0 - 64bit ProductionWith the Partitioning, Real Application Clusters, OLAP and Oracle Data Mining optionsJServer Release 9.2.0.5.0 - Production
/* shutdown the database */
SQL> shutdown immediate
Database closed.Database dismounted.ORACLE instance shut down.SQL> exitDisconnected from Oracle9i Enterprise Edition Release 9.2.0.5.0 - 64bit ProductionWith the Partitioning, Real Application Clusters, OLAP and Oracle Data Mining optionsJServer Release 9.2.0.5.0 -

/* stop GSD */
Production[oracle@db01]$ gsdctl stop

/** Reverse to start */
[oracle@db01]$ gsdctl start
Successfully started GSD on local node

/* connect to database as SYSDBA */
[oracle@db01]$ sqlplus '/as SYSDBA'
SQL*Plus: Release 9.2.0.5.0 - Production on Thu Jul 12 15:04:10 2007
Copyright (c) 1982, 2002, Oracle Corporation. All rights reserved.
Connected to an idle instance.
/* start database */
SQL> startup
ORACLE instance started.
Total System Global Area 4296515640 bytesFixed Size 737336 bytesVariable Size 4261412864 bytesDatabase Buffers 33554432 bytesRedo Buffers 811008 bytesDatabase mounted.Database opened.SQL> exitDisconnected from Oracle9i Enterprise Edition Release 9.2.0.5.0 - 64bit ProductionWith the Partitioning, Real Application Clusters, OLAP and Oracle Data Mining optionsJServer Release 9.2.0.5.0 - Production
/* start listener */
[oracle@db01]$ lsnrctl start
LSNRCTL for Solaris: Version 9.2.0.5.0 - Production on 12-JUL-2007 15:04:37
Copyright (c) 1991, 2002, Oracle Corporation. All rights reserved.
Starting /oracle/app/oracle/product/9.2.0/bin/tnslsnr: please wait...
TNSLSNR for Solaris: Version 9.2.0.5.0 - ProductionSystem parameter file is /oracle/app/oracle/product/9.2.0/network/admin/listener.oraLog messages written to /oracle/app/oracle/product/9.2.0/network/log/listener.logListening on: (DESCRIPTION=(ADDRESS=(PROTOCOL=tcp)(HOST=db01)(PORT=1521)))
Connecting to (DESCRIPTION=(ADDRESS=(PROTOCOL=TCP)(HOST=db01)(PORT=1521)))STATUS of the LISTENER------------------------Alias LISTENERVersion TNSLSNR for Solaris: Version 9.2.0.5.0 - ProductionStart Date 12-JUL-2007 15:04:37Uptime 0 days 0 hr. 0 min. 0 secTrace Level offSecurity OFFSNMP OFFListener Parameter File /oracle/app/oracle/product/9.2.0/network/admin/listener.oraListener Log File /oracle/app/oracle/product/9.2.0/network/log/listener.logListening Endpoints Summary... (DESCRIPTION=(ADDRESS=(PROTOCOL=tcp)(HOST=db01)(PORT=1521)))Services Summary...Service "PLSExtProc" has 1 instance(s). Instance "PLSExtProc", status UNKNOWN, has 1 handler(s) for this service...The command completed successfully[oracle@db01]$ exit

July 09, 2007

Where can you get the best Laksa in town...




Laksa Teluk Kechai... hahahaha

Profile quota limit thru GPO


How to set limit for user profile using GPO.

Open respective Policy.
1. Go to User Configuration->Administrative Templates->System->User Profiles.
2. Enable Limit profile size.
3. (optional) You can change the message as you like.

Thak you.

to clear testing server cache

/ehis/deployment/ejb/deployment cache - clear
restart server

Sun Microsystems Inc.   SunOS 5.9       Generic May 2002
You have new mail.

[root@amp-trap01]# su - oraias
Password: ******
Sun Microsystems Inc.   SunOS 5.9       Generic May 2002
[oraias@amp-trap01]$ cd /tsapp/eHIS/deployment/ejb
[oraias@amp-trap01]$ ls
deployment.cache      deployment_old.cache  orion-ejb-jar.xml
[oraias@amp-trap01]$ ls -ali
total 17524
        14 drwxr-xr-x   2 oraias   other        512 Jul  2 13:51 .
        13 drwxr-xr-x   5 oraias   other        512 Jun 28 09:26 ..
      4067 -rw-r--r--   1 oraias   other    4480512 Jul  2 13:51 deployment.cache
      4028 -rw-r--r--   1 oraias   other    4351716 Jun 28 11:25 deployment_old.cache
        16 -rw-r--r--   1 oraias   other      99500 Jul  2 13:51 orion-ejb-jar.xml
{* stop service *}
[oraias@amp-trap01]$ /oraias/OraHome1/opmn/bin/opmnctl stopall
opmnctl: stopping opmn and all managed processes...

{* delete/rename cache file - i choose to rename *}
[oraias@amp-trap01]$ mv deployment.cache deployment.cache.20070709

{* start service *}
[oraias@amp-trap01]$ /oraias/OraHome1/opmn/bin/opmnctl startall
opmnctl: starting opmn and all managed processes...

{* check status *}
[oraias@amp-trap01]$ /oraias/OraHome1/opmn/bin/opmnctl status  

Processes in Instance: 10gASRel2.amp-trap01
-------------------+--------------------+---------+---------
ias-component      | process-type       |     pid | status  
-------------------+--------------------+---------+---------
LogLoader          | logloaderd         |     N/A | Down    
dcm-daemon         | dcm-daemon         |     N/A | Down    
OC4J               | home               |   23919 | Alive   
WebCache           | WebCache           |   23922 | Alive   
WebCache           | WebCacheAdmin      |   23920 | Alive   
HTTP_Server        | HTTP_Server        |   23921 | Alive   
DSA                | DSA                |     N/A | Down    

[oraias@amp-trap01]$ 

Cerita BukuMuka

Cari dalam cerita ini