IT CHRONICLE
Home Home Il Progetto The Project Il Team The Team Strumenti di Rete Tool Kit Chiave PGP PGP Key Chi sono About Servizi Services EN
[ DOTT. FRANCESCO_RUSSO ]

ICT JOB DIARIESICT JOB DIARIES

List topics List topics
[ DOTT. FRANCESCO_RUSSO ]

Consulente ICT ICT Consultant

> Bridging Technology, Risk Management & Business

Il Profilo
Con oltre 25 anni di esperienza in reti, sistemi e IT risk management, mi occupo di amministrazione On-Premise e Cloud. Aiuto organizzazioni e imprese a garantire la conformità normativa (GDPR, ISO 27001, NIS 1 e 2) e offro servizi avanzati di Digital Forensics. Il mio obiettivo acquittal è consolidare il mio ruolo di esperto in Cybersecurity e Intelligenza Artificiale Generativa, operando a livello internazionale in modalità remote-first.

Esperienza sul Campo
Dal 2005 sono Programmatore Sistemista e Privacy Manager per il Consorzio per la Bonifica della Capitanata, ruolo a cui affianco una continua attività di consulenza per realtà sanitarie e studi legali (Gruppo Salatto, Studio Torlontano, ecc.). Gestisco operativamente attività di DFIR (Digital Forensics and Incident Response), Business Continuity, Disaster Recovery e mitigazione dell'impatto dei rischi IT. In passato, ho coordinato team internazionali come IT Project Manager tra Amsterdam e Tallinn.

Visione Strategica e Competenze
Comprendere l'infrastruttura richiede anche una solida visione aziendale. Per questo ho integrato il mio background tecnico (Windows/Linux Server, reti TCP/IP, Firewall) con una Laurea Magistrale in Scienze Economiche conseguita con lode. Unisco l'approccio ingegneristico alle metodologie manageriali e Agile (ITIL v.3, Scrum, Six Sigma). Attualmente sto espandendo le mie competenze attraverso i percorsi ufficiali Google come Cybersecurity Expert e Generative AI Leader.

Oltre il codice
Lavoro correntemente in inglese (certificazione C2 Cambridge) e conosco altre tre lingue. Quando non sono alle prese con server o incident response, ricarico le energie a contatto con la natura, pilotando droni (UAS Open A1/A3), dedicandomi alla fotografia o sperimentando nuove tecniche ai fornelli.

Formazione in corso

  • Professional Cloud Architect (Google Cloud)

Formazione Accademica

  • Master in Gestione delle imprese e delle società MA659 (30/30)
  • Laurea Magistrale in Scienze Economiche LM-56 (110/110 e Lode)
  • Laurea Triennale in Scienze dell'Economia e della Gestione Aziendale L-18 (94/110)

Certificazioni
Di seguito l'elenco completo delle certificazioni conseguite, dei corsi di specializzazione e dei badge ottenuti, a testimonianza del continuo aggiornamento tecnico e professionale:

  • Cybersecurity Foundations Professional Certificate (ID: 51934206)
  • Microsoft Certified: Azure Fundamentals
  • Foundations of Operationalizing MITRE ATT&CK
  • Foundations of Purple Teaming
  • Autopsy Basics and Hands On – Digital Forensics (ID: YRXYSTQBK8)
  • GrassHopper Javascript – Coding Fundamentals, Coding Fundamentals II, Array Methods, Animations
  • Project Management Essentials Certified (ID: 55005870)
  • Scrum Foundation Certificate (SFPC) (ID: 43043593)
  • Six Sigma White Belt (ID: 55005099)
  • Six Sigma Yellow Belt (ID: 729673)
  • ITIL v.3 Foundation (ID: GR750562993FR)
  • Cybersecurity Essentials – Cisco Netacad
  • Introduction to Cybersecurity – Cisco Netacad
  • Introduction to Cisco Packet Tracer – Cisco Netacad
  • Introduction to Internet of Everything – Cisco Netacad
  • Google Analytics for Beginners
  • Google Digital Training (ID: R7ZXBVRRR)
  • The EU GDPR - An Introduction (ID: UC-0HROEMGN)
  • Eipass Progressive (ID: 8B77A028CB)

The Profile
With over 25 years of experience in networks, systems, and IT risk management, I specialize in On-Premise and Cloud administration. I help organizations ensure regulatory compliance (GDPR, ISO 27001, NIS 1 and 2) and provide advanced Digital Forensics services. My current goal is to consolidate my expertise in Cybersecurity and Generative AI, collaborating internationally in a remote-first work environment.

Field Experience
Since 2005, I have served as the System Programmer and Privacy Manager for the Consorzio per la Bonifica della Capitanata, alongside continuous consulting work for healthcare facilities and law firms. I operationally manage DFIR (Digital Forensics and Incident Response), Business Continuity, Disaster Recovery, and IT risk mitigation. Previously, I coordinated international teams as an IT Project Manager between Amsterdam and Tallinn.

Strategic Vision & Skills
Understanding IT infrastructure also requires a solid business vision. That is why I integrated my technical background (Windows/Linux Servers, TCP/IP networks, Firewalls) with a Master's Degree in Economics (Summa Cum Laude). I combine an engineering approach with managerial and Agile methodologies (ITIL v.3, Scrum, Six Sigma). I am currently expanding my skill set through the official Google Cybersecurity Expert and Generative AI Leader paths.

Beyond the code
I am fluent in English (Cambridge C2 certification) and have knowledge of three other languages. When I am not dealing with servers or incident response, I recharge my energy by immersing myself in nature, flying drones (UAS Open A1/A3), practicing photography, or experimenting with new cooking techniques.

Formazione in corso

  • Professional Cloud Architect (Google Cloud)

Academic Background

  • Postgraduate Master in Corporate and Business Management (MA659)
  • Master's Degree in Economics LM-56 (Summa Cum Laude)
  • Bachelor's Degree in Economics and Business Management L-18 (94/110)

Certifications
Below is the complete list of certifications, specialization courses, and badges achieved, demonstrating a continuous commitment to technical and professional development:

  • Cybersecurity Foundations Professional Certificate (ID: 51934206)
  • Microsoft Certified: Azure Fundamentals
  • Foundations of Operationalizing MITRE ATT&CK
  • Foundations of Purple Teaming
  • Autopsy Basics and Hands On – Digital Forensics (ID: YRXYSTQBK8)
  • GrassHopper Javascript – Coding Fundamentals, Coding Fundamentals II, Array Methods, Animations
  • Project Management Essentials Certified (ID: 55005870)
  • Scrum Foundation Certificate (SFPC) (ID: 43043593)
  • Six Sigma White Belt (ID: 55005099)
  • Six Sigma Yellow Belt (ID: 729673)
  • ITIL v.3 Foundation (ID: GR750562993FR)
  • Cybersecurity Essentials – Cisco Netacad
  • Introduction to Cybersecurity – Cisco Netacad
  • Introduction to Cisco Packet Tracer – Cisco Netacad
  • Introduction to Internet of Everything – Cisco Netacad
  • Google Analytics for Beginners
  • Google Digital Training (ID: R7ZXBVRRR)
  • The EU GDPR - An Introduction (ID: UC-0HROEMGN)
  • Eipass Progressive (ID: 8B77A028CB)
> author identified
Foto Francesco Russo

Removing Duplicate SPNs in Active Directory


While monitoring system logs, a critical error was identified related to the Key Distribution Center (KDC). The logs flagged the presence of duplicate Service Principal Names (SPNs), an issue that can trigger non-secure authentication downgrades from Kerberos to NTLM or cause total connection failures to database instances.

Error Log:
"The KDC encountered duplicate names while processing a Kerberos authentication request. The duplicate name is MSSQLSvc/ZXCSY.local:1433"

Root Cause Analysis

In an Active Directory environment, an SPN must be unique and mapped to a single account (either user or computer). If the same SPN is registered across multiple objects, the Kerberos protocol cannot determine which cryptographic key to use for the service ticket, thus compromising the security of the transaction.

Technical Resolution Procedure

Step 1: Identifying Duplicates

Using the setspn command-line tool with the -F (forest-wide search) and -Q (query) flags, I located the conflicting accounts: setspn -F -Q MSSQLSvc/ZXCSY.local:1433


The output confirmed that the SPN was registered to both the ZXCSY computer account and a dedicated domain service account.

Step 2: Selecting the Correct Account

By checking the SQL Server service configuration via services.msc on the target server, I verified that the instance was running under a Domain User Account. Therefore, the SPN registered to the computer account was redundant and the primary cause of the conflict.

Step 3: Removing the Duplicate SPN

I proceeded to delete the incorrect entry from the computer account using the -D (Delete) parameter: setspn -D MSSQLSvc/ZXCSY.local:1433 ZXCSY

Conclusion and Verification

A follow-up query confirmed that the SPN is now exclusively associated with the service account. This resolution restored proper Kerberos authentication, eliminating insecure NTLM fallbacks and stabilizing infrastructure access for the SQL instance.

Rimozione di SPN Duplicati in Active Directory



Durante il monitoraggio dei log di sistema, è stato riscontrato un errore critico relativo al Key Distribution Center (KDC). L'errore segnalava la presenza di Service Principal Name (SPN) duplicati, un problema che può causare il downgrade dell'autenticazione da Kerberos a NTLM o il fallimento totale delle connessioni verso il database.
Log di Errore:
"The KDC encountered duplicate names while processing a Kerberos authentication request. The duplicate name is MSSQLSvc/ZXCSY.local:1433"

Analisi del Problema

In un ambiente Active Directory, un SPN deve essere univoco e associato a un solo account (utente o computer). Se lo stesso SPN è registrato su più oggetti, il protocollo Kerberos non è in grado di determinare quale chiave utilizzare per criptare il ticket di servizio, compromettendo la sicurezza della transazione.

Procedura Tecnica di Risoluzione

Step 1: Identificazione dei duplicati


Utilizzando lo strumento da riga di comando setspn con i flag -F (ricerca globale) e -Q (query), ho individuato gli account in conflitto: setspn -F -Q MSSQLSvc/ZXCSY.local:1433


L'output ha confermato che l'SPN era registrato sia sull'account computer ZXCSY sia su un account utente di servizio dedicato.
 
Step 2: Scelta dell'account corretto

Attraverso la console services.msc sul server SQL, è stato verificato che il servizio SQL Server era configurato per l'avvio tramite un Account Utente di Dominio. Pertanto, l'SPN registrato sull'account Computer risultava ridondante e causa del conflitto.

Step 3: Rimozione dell'SPN duplicato

Ho proceduto alla rimozione della voce errata dall'account computer utilizzando il parametro -D (Delete): setspn -D MSSQLSvc/ZXCSY.local:1433 ZXCSY

Conclusione e Verifica

Una successiva query di controllo ha confermato che l'SPN è ora associato esclusivamente all'account di servizio. La risoluzione ha ripristinato l'autenticazione Kerberos, eliminando i fallback non sicuri verso NTLM e stabilizzando l'accesso all'infrastruttura SQL.

Windows 11 Start Menu & Task Manager Not Working? How to fix the "Blank Process List"

Have you ever had that moment of panic where your OS just... stops responding? It happened to me recently: my Start button was dead, the Taskbar was frozen, and to make things worse, Task Manager wouldn't show any processes. It was just a white, empty window. I had to do a bit of research and digging into the system to fix it, and since I found the solution, I thought I’d share it here to save you some headaches.

Ghost processes


Step 1: Restart the Shell Experience Host

In Windows 11, the Start menu and Taskbar rely on specific background processes. If they hang, the UI dies.

  • Open Task Manager (Ctrl + Shift + Esc).
  • Go to File > Run new task, type powershell, and check Create this task with administrative privileges.
  • Run the following command to re-register the Shell Host:

Get-AppxPackage -allusers Microsoft.Windows.ShellExperienceHost | Foreach {Add-AppxPackage -DisableDevelopmentMode -Register "$($_.InstallLocation)\AppXManifest.xml"}

Step 2: Fix the Blank Process List (State Repository)

If Task Manager isn't showing any processes, the State Repository Service might be stuck. This service tracks all AppX applications. In an Admin PowerShell, run:


Stop-Service -Name "StateRepository" -Force
Start-Service -Name "StateRepository"

Step 3: Repair System Integrity (DISM & SFC)

If the binaries are corrupted, use the Deployment Image Servicing and Management tool:


DISM /Online /Cleanup-Image /RestoreHealth
sfc /scannow

Conclusion

Most of the time, the issue lies in the AppX Registration. Re-registering the specific shell package usually solves the "unresponsive Start button" without needing a full OS reinstall.

Menu Start e Task Manager non funzionano su Windows 11? Come risolvere il bug dei "Processi Invisibili"

Vi è mai capitato di trovarvi con il sistema operativo completamente bloccato nei punti vitali? A me è capitato proprio ultimamente: il tasto Start non dava segni di vita, la Taskbar era congelata e, come se non bastasse, il Task Manager non mostrava più alcun processo. Era solo un riquadro bianco e deserto. Ho dovuto fare un po' di ricerca e smanettare tra i servizi di sistema per risolverlo, quindi ho deciso di scrivere questa guida rapida per spiegarvi come uscirne senza perdere la testa.

Ghost processes


Step 1: Reinstallare lo Shell Experience Host

In Windows 11, il menu Start e la Taskbar dipendono da processi specifici. Se saltano i riferimenti, l'interfaccia "muore".

  • Aprite il Task Manager (Ctrl + Shift + Esc).
  • Andate su File > Esegui nuova attività, scrivete powershell, e spuntate l'opzione per i Privilegi amministrativi.
  • Eseguite questo comando per mappare di nuovo lo Shell Host:

Get-AppxPackage -allusers Microsoft.Windows.ShellExperienceHost | Foreach {Add-AppxPackage -DisableDevelopmentMode -Register "$($_.InstallLocation)\AppXManifest.xml"}

Step 2: Sbloccare la lista processi (State Repository)

Se il Task Manager è vuoto, il colpevole è spesso il State Repository Service, che gestisce il database delle app di Windows.

In PowerShell (Admin), forzate il riavvio del servizio:


Stop-Service -Name "StateRepository" -Force
Start-Service -Name "StateRepository"

Step 3: Pulizia finale (DISM & SFC)

Dopo aver ripristinato l'interfaccia, è buona norma assicurarsi che non ci siano file corrotti alla base:


DISM /Online /Cleanup-Image /RestoreHealth
sfc /scannow

Conclusione

Non serve formattare! Nella maggior parte dei casi, è solo un problema di registrazione dei pacchetti AppX. Con un paio di righe di PowerShell il vostro Windows 11 tornerà come nuovo. Spero che questa guida vi faccia risparmiare il tempo che ho perso io a cercare la soluzione!