Posts

Showing posts from August, 2026

Proxmox Backup to NAS: NFS vs SMB Setup and Restore Checklist

Preparation date: September 17, 2026. Scope: This is a documentation-based implementation and verification guide, not a claim about a completed customer incident. It covers ordinary Proxmox VE VZDump backups written to NAS storage. A Proxmox Backup Server datastore is a different architecture and is called out separately. The short answer is: choose NFS when Proxmox is the main consumer and your NAS can restrict the export to the Proxmox node addresses. Choose SMB/CIFS when the same share must also fit a Windows-oriented operating model or your NAS administration is already built around named users and SMB permissions. The protocol choice matters, but the restore test matters more. A green backup task proves that an archive was written; it does not prove that you can recover a VM on replacement storage. Proxmox backup to NAS verification flow A Proxmox node writes a VZDump backup over NFS or SMB to a NAS, then a separate restore test validates recovery. ...

ESXi /bootbank Alarms After Disk Replacement: What This Incident Did and Did Not Prove

Operator-reported incident with documentation-based safety notes. Revised September 12, 2026. The sequence below was supplied by the operator. Exact alarm text, ESXi build, boot-device layout, log extracts, and a measured observation duration were not supplied. The root cause remains unconfirmed. What was actually reported vCenter raised an alarm for another hardware object on one host. A failed physical disk was found and replaced. Afterward, /bootbank warning emails recurred—sometimes within five minutes, sometimes at roughly hourly intervals. The operator and hardware maintenance vendor placed the host in maintenance mode and rebooted it. The emails stopped after some additional time. Continued observation found no further problem, and the host is currently in service according to the operator's account. This is a recovery observation, not proof that the replaced disk held the bootbank, that a RAID fault caused the warning, or that restarting repaired damaged media. We also ...

Horizon USB Across Subnets: Identify the Transport Before Changing Firewall Rules

Documentation-based investigation guide. Revised September 12, 2026. No packet capture or completed incident record is available for this article. The earlier unsupported failure percentage and blanket TCP/UDP rule recommendation have been removed. A USB device that works on one subnet but not another gives you a comparison opportunity—not a proven firewall diagnosis. This guide explains how to choose the traffic path to investigate. The separate subnet worksheet is for recording the results; it does not establish a root cause. First distinguish the feature from the symptom Record whether the device is absent from the client's redirection menu, listed but unable to connect, visible inside Windows but unusable by an application, or disconnected during use. These are different failure stages. Also distinguish generic USB redirection from optimized audio/video, printing, and client drive redirection. A working microphone through an optimized channel does not demonstrate that gener...

Horizon Login Loops After Maintenance: Reconstruct the UAG Access Chain

Documentation-based investigation guide. Revised September 12, 2026. The original narrative did not include an attributable maintenance record or logs. Its topology and recovery story are not presented here as verified firsthand events. A login loop after maintenance needs a timeline, not another full-stack reboot. The question is which part of the access transaction first stops behaving as expected. Restarting a gateway may restore availability while leaving that question unanswered. Build one transaction record For one approved test account, record the timezone, client build, entry FQDN, last successful screen, selected UAG, selected Connection Server, and whether a desktop was allocated. Correlate the test with gateway, authentication, broker, and load-balancer records. Remove account identifiers, tokens, OTP values, and shared secrets before circulating evidence. Do not assume every deployment uses the same order of disclaimer, RADIUS, and AD authentication. Describe the confi...

Popular posts from this blog

Horizon vdpConnect_Failure: Connection-Stage Triage Before Reinstalling

Horizon Agent Unreachable: Registration and Desktop-Health Triage

Horizon Protocol Error: Trace the Display-Session Handoff