### SharePoint 2013 Prerequisite Installer Failing – No Internet

I recently tried installing SharePoint 2013 and came across a weird issue which stopped the prerequisite installer from running to completion. It complained that it didn’t have access to the internet which was really odd.

I found a workaround for this which I found here was to change some of the settings in Internet Explorer. What I did can be followed below:

1. Open IE and go to “www.microsoft.com” and uncheck the prompt which will continue to display pop-ups
2. Go to the gear icon -> Internet Options -> Security and open the trusted sites
3. now add “http://*microsoft.com” to the trusted site list
4. save and close IE

Now you should be able to run the installer without an issue. Enjoy!

### LAPS Winform

*UPDATE*

I have created the *final* iteration of this WPF form which can be found here

*UPDATE*

I didn’t like having to remote desktop into my domain controller and couldn’t figure out if there was a LAPS tool included in RSAT tools so I decided just to make my own and to add some extra features.

I wanted the GUI to look pretty much identity to the actual LAPS GUI. You can see the difference below:

You might be able to see that I  changed the “Set” button to say “Set and Update”. This was because I wanted the form to also attempt to update the group policy settings on the computer so that it would get a new password a lot quicker than the original GUI.

There’s not much else I can say, I will leave the entire script below for you to copy and paste. You will need to add the domain controller for your environment in the $domaincontroller variable at the top of the script. I have converted this to an EXE and run whenever I need it, never skips a beat. Let me know how you get on with it. Enjoy! #ADDING FORM ASSEMBLY Add-Type -AssemblyName system.windows.forms #ENTER DOMAIN CONTROLLER BELOW$domaincontroller = ""

#CONVERTING BASE 64 ICON TO SOMETHING USEFUL$iconstream = [System.IO.MemoryStream][System.Convert]::FromBase64String($icon64)$iconbmp = [System.Drawing.Bitmap][System.Drawing.Image]::FromStream($iconstream)$iconhandle = $iconbmp.GetHicon()$icon = [System.Drawing.Icon]::FromHandle($iconhandle) #LAPS UI FORM$lapsform = New-Object system.windows.forms.form
$lapsform.Size = New-Object System.Drawing.Size(400,320)$lapsform.Text = "                                     LAPS UI         "
$lapsform.StartPosition = "centerscreen"$lapsform.FormBorderStyle = "fixed3d"
$lapsform.Icon =$icon

#LAPS TEXTBOX LABEL
$lapsform_computername_textbox_label = New-Object System.Windows.Forms.Label$lapsform_computername_textbox_label.Location = New-Object System.Drawing.Point(20,20)
$lapsform_computername_textbox_label.Size = New-Object System.Drawing.Size(100,15)$lapsform_computername_textbox_label.Text = "ComputerName"
$lapsform.Controls.Add($lapsform_computername_textbox_label)

#LAPS TEXTBOX
$lapsform_computername_textbox = New-Object System.Windows.Forms.TextBox$lapsform_computername_textbox.Location = New-Object System.Drawing.Point(21,40)
$lapsform_computername_textbox.Size = New-Object System.Drawing.Size(250,15)$lapsform.Controls.Add($lapsform_computername_textbox) #VARIABLE FOR KEYDOWN$lapsform_computername_textbox_keydown = {}

#KEYDOWN ASSIGNED
$lapsform_computername_textbox_keydown = [System.Windows.Forms.KeyEventHandler]{ if ($_.keycode -eq 'Enter'){
$lapsform_search_button.PerformClick() } } #REGISTER KEYDOWN HANDLER TO COMPUTER TEXTBOX$lapsform_computername_textbox.add_keydown($lapsform_computername_textbox_keydown) #LAPS SEARCH BUTTON$lapsform_search_button = New-Object System.Windows.Forms.Button
$lapsform_search_button.Location = New-Object System.Drawing.Point(290,40)$lapsform_search_button.Size = New-Object System.Drawing.Size(60,20)
$lapsform_search_button.Text = "Search"$lapsform.Controls.Add($lapsform_search_button) #LAPS SEARCH BUTTON LOGIC$lapsform_search_button.add_click({
if ($lapsform_computername_textbox.Text.Length -le 0){$lapsform_output_label.Text = "You must enter a computer name"
}else{
try{
#getting text from textbox
$computernametext =$lapsform_computername_textbox.Text

#checking if computer is in AD
$checkad = Get-ADComputer -Identity$computernametext

#invoking admpwdpassword command on $domaincontroller$invokegetadmpwd = Invoke-Command -ComputerName $domaincontroller -ScriptBlock {get-admpwdpassword -ComputerName$args[0] } -ArgumentList $computernametext | Select-Object Password, expirationtimestamp #getting password and password expiration date$lapsform_password_textbox.Text = $invokegetadmpwd | Select-Object -ExpandProperty password$lapsform_password_expires_textbox.Text = $invokegetadmpwd | Select-Object -ExpandProperty expirationtimestamp$lapsform_output_label.text = ""
}catch{

if (!$checkad){$lapsform_output_label.Text = "Computer not found"
}
#clears password and expiry textbox
$lapsform_password_textbox.Text = ""$lapsform_password_expires_textbox.Text = ""
}
}
})

#PASSWORD TEXTBOX LABEL
$lapsform_password_textbox_label = New-Object System.Windows.Forms.Label$lapsform_password_textbox_label.Location = New-Object System.Drawing.Point(20, 90)
$lapsform_password_textbox_label.Size = New-Object System.Drawing.Size(100,20)$lapsform_password_textbox_label.Text = "Password"
$lapsform.Controls.Add($lapsform_password_textbox_label)

#PASSWORD TEXTBOX
$lapsform_password_textbox = New-Object System.Windows.Forms.TextBox$lapsform_password_textbox.Location = New-Object System.Drawing.Point(21,110)
$lapsform_password_textbox.Size = New-Object System.Drawing.Size(250,15)$lapsform_password_textbox.ReadOnly = $true$lapsform_password_textbox.Font = New-Object System.Drawing.Font("courier",12,[System.Drawing.FontStyle]::Regular)
$lapsform.Controls.Add($lapsform_password_textbox)

#PASSWORD EXPIRES TEXTBOX LABEL
$lapsform_password_expires_textbox_label = New-Object System.Windows.Forms.Label$lapsform_password_expires_textbox_label.Location = New-Object System.Drawing.Point(20,145)
$lapsform_password_expires_textbox_label.Size = New-Object System.Drawing.Size(100,20)$lapsform_password_expires_textbox_label.Text = "Password Expires"
$lapsform.Controls.Add($lapsform_password_expires_textbox_label)

#PASSWORD EXPIRES TEXTBOX
$lapsform_password_expires_textbox = New-Object System.Windows.Forms.TextBox$lapsform_password_expires_textbox.Location = New-Object System.Drawing.Point(21,165)
$lapsform_password_expires_textbox.Size = New-Object System.Drawing.Size(250,15)$lapsform_password_expires_textbox.ReadOnly = $true$lapsform.Controls.Add($lapsform_password_expires_textbox) #DATETIME PICKER LABEL$lapsform_datetime_picker_label = New-Object System.Windows.Forms.Label
$lapsform_datetime_picker_label.Location = New-Object System.Drawing.Point(20,200)$lapsform_datetime_picker_label.Size = New-Object System.Drawing.Size(150,20)
$lapsform_datetime_picker_label.Text = "New Expiration Time"$lapsform.Controls.Add($lapsform_datetime_picker_label) #DATETIME PICKER$lapsform_datetime_picker = New-Object System.Windows.Forms.DateTimePicker
$lapsform_datetime_picker.Location = New-Object System.Drawing.Point(21,220)$lapsform_datetime_picker.Size = New-Object System.Drawing.Size(250,15)
$lapsform_datetime_picker.Format = "custom"$lapsform_datetime_picker.CustomFormat = "dd MMMM yyyy"
$lapsform.Controls.Add($lapsform_datetime_picker)

#DATETIME PICKER SET BUTTON
$lapsform_datetime_set_button = New-Object System.Windows.Forms.Button$lapsform_datetime_set_button.Location = New-Object System.Drawing.Point(285,220)
$lapsform_datetime_set_button.Size = New-Object System.Drawing.Size(91,20)$lapsform_datetime_set_button.Text = "Set and Update"
$lapsform.Controls.Add($lapsform_datetime_set_button)

$lapsform_datetime_set_button.add_click({ if ($lapsform_computername_textbox.Text.Length -le 0){
$lapsform_output_label.Text = "You must enter a computer name" }else{ try{$datetimepickervalue = $lapsform_datetime_picker.value.ToString("MM dd yyyy") #getting text from textbox$computernametext = $lapsform_computername_textbox.Text #checking if computer is in AD$checkad = Get-ADComputer -Identity $computernametext #invoking admpwdpassword command on$domaincontroller
Invoke-Command -ComputerName $domaincontroller -ScriptBlock {reset-admpwdpassword -ComputerName$args[0] -wheneffective $args[1] } -ArgumentList$computernametext, $datetimepickervalue #setting value of output label$lapsform_output_label.Text = "Password reset request was successful - GP updating - PLEASE WAIT"

Invoke-GPUpdate -Computer $computernametext -ErrorAction SilentlyContinue$lapsform_output_label.Text = "Finished"
}catch{
#checking if computer is in AD
if (!$checkad){$lapsform_output_label.Text = "Computer not found"
}else{
write-host "Another issue - WinRM probably isn't allowed..."
}

}

}
})

#OUTPUT TEXTBOX
$lapsform_output_label = New-Object System.Windows.Forms.Label$lapsform_output_label.Location = New-Object System.Drawing.Point(1,265)
$lapsform_output_label.Size = New-Object System.Drawing.Size(385,20)$lapsform_output_label.BackColor = "white"
$lapsform_output_label.BorderStyle = "fixedsingle"$lapsform.Controls.Add($lapsform_output_label) #LAPS UI FORM DIALOG [void]$lapsform.ShowDialog()

### Submitting a CSR for Signing by a CA

Bit of a weird post today, I had a need to update the SSL certificate for an old DRAC (Dell Remote Access Controller) 5 module. This is just an overview of what I did.

First I logged into the DRAC and went to System > Remote Access > Configuration > SSL > Generate a new certificate signing request (CSR). In here I entered my details and put the address I would use for connecting to the server as the common name.

After I clicked “Submit”, I got a small txt file called “csr.txt”. I then needed to get this signed by a Certificate Authority (CA) so that I could get an actual certificate file. Note that the format you want for DRAC 5 is .cer

The CA I used for this was “getacert“, they’re a bit “ghetto” with their site not even using the technology that they provide… kind of ironic but I was desperate.

On this site I entered the contents of my csr.txt file and clicked “Submit CSR“. This them gave me the certificate file, signed by getacert.

Finally, I went back into the DRAC management webpage (in the same location as pointed out earlier) and selected the option to “Upload Server Certificate” Now just select the .cer file you got from the CA and click submit. This will cause the management site to go down for a couple of minutes whilst it configures the new certificate.

After this you should be all set. Enjoy!

### Unix Permissions Winform

In this post, I will show case a winform application that I have just finished building which will tell you the correct command when given the required permissions. For example, a read permission is identified as a 4 in Unix environments.

I have created a small table below:

 Permission Level Permission Bit Read 4 Write 2 Execute 1

Since you need to define permissions for: the owner; owner group and others, you need to supply 3 permission bits per command. Plus one more for special permissions at the beginning but we can ignore that for now.

So if we wanted to give the below permissions:

Special – ignore

Owner – read (4), write(2) and execute(1)

Owner group – read(4) and write(2)

Other – read(4)

we would use the following command: chmod 0764 <path-to-file>

Now we can get on with the actual winform… I created this to tell me what permissions I needed to assigned. Below is a screenshot of the winform:

This also keeps a short history of the permissions in the history textbox which is flushed after so long to stop the textbox from overflowing. Here is a download for the project, in the zip folder is both a ps1 file and an exe file. Enjoy!

### Coloured BASH Output Using TPUT

From my previous post, found here, you can see that I have formatted the text to be a specific colour depending on what sort of output I get. So for errors I make the text red and for successful messages I make the text green.

This is easy to implement into BASH scripts and a lot of other formatting can be applied as well. In this post, I will be covering the colorization (probably not a word), underlining, bold text and resetting the changes.

• 0 – Black
• 1 – Red
• 2 – Green
• 3 – Yellow
• 4 – Blue
• 5 – Magenta
• 6 – Cyan
• 7 – White
$(tput setaf 1)TEXT HERE ### Bold Text: #Starts bold characters$(tput bold)TEXT HERE

#Ends bold characters

$(tput sgr0)TEXT HERE I would just like to add here that tput sgr0 removes all formatting and returns text to the default style and colour. ### Underlining: #Starts underlining$(tput smul)TEXT HERE

#Ends underlining

$(tput rmul)TEXT HERE Below is a full script which includes all the possible combinations of the examples above, apart from black text. #!/bin/bash echo " regular bold underline$(tput setaf 1)Text $(tput bold)Text$(tput sgr0)$(tput setaf 1)$(tput smul)Text$(tput rmul)$(tput setaf 2)Text $(tput bold)Text$(tput sgr0)$(tput setaf 2)$(tput smul)Text$(tput rmul)$(tput setaf 3)Text $(tput bold)Text$(tput sgr0)$(tput setaf 3)$(tput smul)Text$(tput rmul)$(tput setaf 4)Text $(tput bold)Text$(tput sgr0)$(tput setaf 4)$(tput smul)Text$(tput rmul)$(tput setaf 5)Text $(tput bold)Text$(tput sgr0)$(tput setaf 5)$(tput smul)Text$(tput rmul)$(tput setaf 6)Text $(tput bold)Text$(tput sgr0)$(tput setaf 6)$(tput smul)Text$(tput rmul)$(tput setaf 7)Text $(tput bold)Text$(tput sgr0)$(tput setaf 7)$(tput smul)Text$(tput rmul) " I know it looks quite horrible in the source code but this is what the output looks like: Enjoy! ### Server Reboot Script Running a little low on content this last few months, plus I’ve been busy with other work stuff. I had the requirement to create a PowerShell script that would get the uptime of a server and then decide whether or not the server needed rebooting. I also wanted the script to randomize the reboot of the servers, that way if there are multiple servers that need rebooting at once, they don’t cause a power spike or resource issues on the hosts. I did this by creating a random number between 1 and 5 and then if the number equals 5, the server is rebooted. If not then the server isn’t rebooted. This is the script that I ended up with and what is currently being tested: $loglocation = "C:\scripts\reboot\log"
$dateforfile = Get-Date #GETS UPTIME IN DAYS$lastbootuptime = Get-WmiObject win32_operatingsystem
$uptime = (Get-Date) - ($lastbootuptime.converttodatetime($lastbootuptime.lastbootuptime))$uptimeindays = $uptime.days #GETS RANDOM NUMBER$randomnumber = Get-Random -Minimum 1 -Maximum 6

if ($uptimeindays -ge "14"){ Add-Content -Path "$loglocation\$env:COMPUTERNAME.txt" -Value @" ===================================================================================== Server restarted at:$dateforfile
This was an immediate shutdown as the server had been up for $uptimeindays days "@ Restart-Computer -Force }elseif ($uptimeindays -lt "14" -and $uptimeindays -ge "7"){ if ($randomnumber -eq "5"){

Add-Content -Path "$loglocation\$env:COMPUTERNAME.txt" -Value @"
=====================================================================================
Server restarted at :
$dateforfile This was a random restart as uptime was only$uptimeindays days
"@
Restart-Computer -Force
}else{

Add-Content -Path "$loglocation\$env:COMPUTERNAME.txt" -Value @"
=====================================================================================
Server NOT restarted
$dateforfile This was not randomly restarted. Uptime is currently$uptimeindays days. Random number was $randomnumber "@ } }else{ Add-Content -Path "loglocation\$env:COMPUTERNAME.txt" -Value @"
=====================================================================================
No restart required
$dateforfile No restart required since uptime is only$uptimeindays days
"@
}

The first time I created this script and set it up as a scheduled task, nothing happened. Turns out that I needed the -Force parameter in order for the server to be rebooted.

This will later be used in a group policy without the log creating as that is only necessary in the testing stage.

Enjoy!

### Creating a Logon Script To Cleanup User Directories

In this post, I’ll discuss how I created a PowerShell script that runs when a user logs out of a terminal server and cleans up a directory in their home folder that was filling up with space due to application crashes.

This is the script I created:

$username =$ENV:USERPROFILENAME

$testpath = Test-Path -Path "$username\AppData\Local\Microsoft\Windows\ApplicationFolder"

if ($testpath -eq$true){

$items = Get-ChildItem - Path "$username\AppData\Local\Microsoft\Windows\ApplicationFolder"

foreach($i in$items){

Remove-Item -Path "$username\AppData\Local\Microsoft\Windows\ApplicationFolder\$i" -Recurse -Confirm:$FALSE } }else{} This code will get the users profile root path and then check if the application folder exists, if it doesn’t then the script ends. If it does exist, the script will cycle through each entry and remove it. The -Confirm:$FALSE parameter was added because the script kept asking for confirmation when deleting each item. This stops this behaviors and deletes each item without a confirmation prompt.

Now that I have the script and it is working as expected, I create a local group policy that will use:

Name – “powershell.exe”

Parameters – “-F “C:\path\to\file.ps1”

You can see this in the screenshot below:

This group policy was added under:

User Configuration – Windows Settings – Scripts (Logon/Logoff) – Logoff

Hopefully you can replicate what I have done and don’t experience any issue. Note that you might need to change the script execution policy on the machine before this works properly. Just something to keep in mind if the group policy isn’t working. Enjoy!

### SharePoint URL Changing

There are two main ways that I change the URL of a list or library on a SharePoint site. First off I’d like to explain why I often have to do these tricks. Whenever you create a new SharePoint site from a template, even after you change the names of all the lists and libraries in a web page, the URL will still reference what ever the template lists were called.

## Option 1 – SharePoint Designer

To change the URL in SharePoint designer, open your site using the URL “http://HOSTNAME/sites/SITENAME” and this should give you list of items in the left hand column resembling the screenshot below:

You should see that the bottom option says “All Files“, double click this and go into “Lists“. This will show all of the lists on your site and you should see that they are all using the old name which is the cause of the incorrect URLs. Simply rename these lists to what ever you need and the URL will change.

## Option 2 – File Explorer

If you don’t see the “All Files” section in SharePoint designer then this method can be used instead. Open a file explorer and navigate to your site. You can see how I have done this below:

Now go into “Lists” and you should be able to see the incorrectly named lists. Simply rename these lists and the URL will change.

I’m not sure why the “All Files” section in SharePoint designer doesn’t show so If anyone can shed some light on that I would be appreciated. Enjoy!

### Mailto in SharePoint String Builder

Bit of a weird, one off sort of thing. I was creating a workflow in SharePoint which would send an email. On this email would be an “Approve” and “Decline” button. The decline button was easy enough to do but the approve button turned out to be a complete pain in the back side.

First of all, I would like to tell you to not use mailto whenever you can. There are better programs out there. Trust me. If anyone knows any really good ones that they standby please feel free to leave a comment.

The mailto syntax is basically this:

mailto:RECIPIENT?cc=CCRECIPIENT&subject=SUBJECT TEXT&body=BODY TEXT

This looks simple enough but once you want to start doing some more complicated features/formatting that would otherwise be quite simple in HTML, become near impossible here. Especially with it being in a SharePoint string builder box.

What I wanted was for there to be three lines of text, two in which got information from the SharePoint form to fill in the information and one for adding text. By the way if you didn’t know, to add a new line you can use “%0d0d“.

That’s: percent sign – zero – delta – zero – delta

This is the final code that I ended up with:

mailto:RECIPIENT@EMAIL.COM?cc=[%Current Item:Created By%]&subject=Approval Authorisation for [%Current Item:Created By%]&body=The remote access request for [%Current Item:Created By%] has been approved by [%Current item:Manager's Name%]%0d%0dThe reason for approval is - [%Current Item:Reason for approval%]%0d%0dPlease specify any limitations below:

Here is a picture just in case you want to see it and below that what the actual email looks like:

I would like to add that you will have to change the “Add or Change Lookup” so that it finds the “Display Name”, otherwise the users will show as the default SharePoint format which isn’t as good looking. You can see this below:

Hope you enjoyed and found this useful. I may to an entire blog trying to outline the possibilities of using the SharePoint string builder and “Define E-Mail Message” features. Suppose you’ll have to wait and see.

### Installing And Using Samba Shares On Linux

To install samba capabilities on your Linx box, run the following commands:

sudo apt-get install samba samba-common-bin

This will run off an install process, note that it may ask you if you’re sure about installing this, press y to accept and continue.

Now edit the samba configuration file using:

sudo nano /etc/samba/smb.conf

Go all the way to the end of the file and add the following lines…

• [share]
• comment=Pi Share
• path= DIRECTORY LOCATION e.g. /mnt/library
• browseable = yes
• writeable = yes
• only guest = no
• create mask = 0777
• public = no
• guest ok = no

At this point your may need to restart the smb service using the following command:

sudo service smbd restart

You may need to know the IP address of the Linux share in order to access it, you can do this by using “ifconfig” and looking for something along the lines of “192.168…” on the eth0 interface”

To access the share using the Windows and R key to bring up the run dialog box and type in the IP address of the Linux box or its hostname. It would now ask you for credentials, here you should use your regular Linux credentials.

You can see this below:

Once it has accepted my credentials I get the following:

Hopefully, you get the same as I did, if not then leave a comment. Enjoy!