Files
rb/README.md
T
igodwin 6df8a53196 Reorganize: scripts under scripts/, add README disclaimer
- Move _template.ps1 and cg-disable.ps1 into scripts/
- Update all fetch/run URLs and doc links to scripts/ paths
- Rework README layout/naming section; add as-is/no-warranty disclaimer

Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>
2026-07-07 15:56:02 -07:00

2.6 KiB

rb — runbooks

Generic, reusable IT procedures and scripts for MSP field work. Fetched onto client workstations during on-site work with short, hand-typeable commands.

Warning

This repository is PUBLIC-READ. It must never contain client-identifying information — no client names, hostnames, IPs, usernames, credentials, or screenshots. Procedures with placeholders only. See CONTRIBUTING.md for the sanitization rule.

Provided as-is, no warranty. Running any script is at your own risk. Contains no client-identifying data by policy.

Using a runbook

Fetch and read on the target workstation:

irm https://gitea.ivangodwin.com/ops/rb/raw/branch/main/<file> | more

Run an executable runbook script directly (scripts live under scripts/):

irm https://gitea.ivangodwin.com/ops/rb/raw/branch/main/scripts/<file>.ps1 | iex

Scripts prompt for anything client-specific via Read-Host — nothing to edit before running. See scripts/_template.ps1 for the convention.

Layout & naming

  • Runbooks (.md) live flat at the repo root with short, hand-typeable filenames and light category prefixes.
  • Scripts (.ps1) live under scripts/. _template.ps1 sorts first and is the convention reference, not a runnable runbook.
  • Meta (README.md, CONTRIBUTING.md) stays at the root.

Runbook prefixes:

Prefix Domain
win- Windows workstation / server
m365- Microsoft 365 / Entra
od- Open Dental
net- Networking

Placeholder conventions

Fill these from the private tier (private repo or Bitwarden secure note) at run time — never commit filled-in values.

Placeholder Meaning
<CLIENT> Client / site identifier
<SERVER> Server hostname
<SHARE> Share name
<SHARE_USER> Local account used for share access
<USER> End-user account
<PASSWORD> From password manager — never written to a file

Contents

File Purpose
od-smb-cred.md Open Dental SMB share — stored-credential fix
scripts/cg-disable.ps1 Disable Credential Guard, then reboot (prompts to confirm)

Tiers

  • This repo (public): generic procedures, placeholders only.
  • Private tier: filled-in, client-specific versions — private repo or Bitwarden secure notes. Never here.

This repo also serves as the raw source for Intune remediation scripts and as documented-procedures evidence for E&O / cyber insurance.