Skip to content

Category: HowTo

Howto fix the MacOS High Sierra blank root password flaw

A vulnerability within MacOS High Sierra was discoverd: It allowes logins and/or changes to critical Settings with the Superuser (root) without a password.
I’m sure that Apple is already working on a permanent fix for that, until then you should safe your Mac!

Howto fix the macOS blank root password Security issue?

  1. Open ‘Terminal’ or ‘iTerm2’
  2. Type ‘sudo passwd root’
  3. Type your (User) password
  4. Select a strong password for root (and repeat it)
This content is older than 2 years. It might be outdated.

Mozilla FireFox deployment on MacOS and Windows

I’m a big fan of Munki (pronounced monkey, /ˈmʌŋki/, m ah nk ee, or Mung – KEY) an open-source project started by Walt Disney Animation Studios to deploy software and packages to Mac OS X and MacOS based clients. It is written mostly in Python, and it provides a nice way to enforce software installation and/or updates. And since it offers a Mac App Store like Client experience a lot of optional installations (e.g. self-service).

One of the things that I find very useful: You can use scripting as pre- and post-installation parts to customize everything. A few years ago (yep, I use this software for a while now) I started to build several packaged for others. Then the fist enterprise came along and asked me to help them out with an existing Munki installation, during that project, I created a lot of new packages and tweaked most of the existing ones.

Now, a couple of projects and years later, I found, that many still have issues creating packages with customization.

Here is my approach, and I try to stick with it whenever possible: Use packages that you can get from the Vendor, or the Project (if open Source). Even better: Establish an AutoPKG process and work with overrides!

Then use the power of shell scripts to tweak and customize. I’m a scripting guy! I know.

This content is older than 2 years. It might be outdated.

Is your environment to small for an Exchange High-Availability?

Paul Cunningham wrote a very interesting article about that topic!
His key point here: No! possibly not.

And I agree a 100 percent!

What makes that so interesting: I had the same discussion with a customer last week!
They plan to move to the cloud (Office 365) soon. However, the customers business needs the mail service available. Now!

Here is my approach for the customer:

  • Install a second Exchange 2013 Server (virtual)
  • Establish a HAProxy based Load Balancer
  • Configure Database Availability Groups (DAG)
  • Configure a Witness-Server (Existing HA solution was used) – Could be a cheap Azure Service as well
This content is older than 2 years. It might be outdated.
Copyright © 2018 by Joerg Hochwald. All rights reserved. ● Site is powered by Author