Search - oriented Services

Enterprise IT infrastructure services

Choose the service area that matches the affected systems. The final scope is confirmed after reviewing the current environment and business impact.

AD
01

Active Directory and Group Policy Management

Plan, repair and standardize domain controllers, DNS, DHCP, Group Policy, user accounts, shared resources and endpoint policies for a manageable, auditable Windows environment.

Best for: offices, factories, VDI and branch environments
  • Domain join and sign-in issues
  • Group Policy baselines and troubleshooting
  • Shared drives, printers and account permissions
View Service →
VDI
02

VMware Horizon, VDI and Secure Remote Work

Troubleshoot sign-in, session stability, printing, user-data permissions, redirection controls and network paths across Horizon, ESXi and PVE environments.

Best for: VDI, remote work and virtualized platforms
  • Horizon architecture and authentication
  • Session stability and performance
  • User data, printing and transfer controls
View Service →
NET
03

Enterprise Firewall, VPN and Network Access Control

Design and troubleshoot firewall policies, remote access, VLAN segmentation, routing, NAT, DNS and cross-subnet connectivity without weakening the wider network.

Best for: remote work, server zones and access boundaries
  • VPN and remote-access failures
  • Ports, NAT and routing paths
  • VLAN and server-zone segmentation
View Service →
FILE
04

File Sharing, NTFS Permissions and Access Governance

Organize Windows file-server and NAS permissions by department and role, repair inheritance and credential issues, and make access changes traceable.

Best for: departmental shares and project data
  • Share and NTFS permission design
  • Joiner, mover and leaver access
  • Inheritance and credential troubleshooting
View Service →
BK
05

Backup, Recovery and Business Continuity

Review protection for servers, NAS, databases and business systems, then validate that data and services can actually be restored within the required recovery window.

Best for: files, databases, virtual machines and legacy servers
  • Backup architecture and retention
  • Independent and ransomware-resistant copies
  • Recovery drills and evidence
View Service →
SQL
06

SQL Server, ERP and Legacy Systems

Troubleshoot database connectivity, capacity, backup and legacy compatibility, then plan controlled migration with validation and rollback.

Best for: ERP, finance, MES and legacy applications
  • ERP and database connectivity
  • SQL logs, capacity and backups
  • P2V, migration and rollback
View Service →
END
07

Endpoint Controls and Data Protection

Control USB, printing, local storage, shared folders and user permissions with practical policies, documented exceptions and audit records.

Best for: development, finance, design and controlled workstations
  • USB and printing controls
  • Role-based policy exceptions
  • File-transfer and data boundaries
View Service →
NAS
08

NAS, TrueNAS and Storage Architecture

Plan ZFS pools, datasets, permissions, snapshots, replication, capacity and recovery paths for reliable file and virtualization storage.

Best for: large files, media and virtualization storage
  • TrueNAS and ZFS planning
  • Hot, warm and archive data tiers
  • Virtualization storage integration
View Service →
WAN
09

Multi-WAN, SD-WAN and Traffic Steering

Assign office, live-streaming, overseas, server and backup traffic to suitable links with explicit routing, QoS, monitoring and failover rules.

Best for: e-commerce, live streaming, overseas access and multiple sites
  • Office and live-stream traffic separation
  • Policy routing and QoS
  • Link monitoring and failover validation
View Service →
BR
10

Branch Connectivity, Domain Trust, DNS and DHCP

Build predictable cross-site access by aligning routing, firewall rules, DNS forwarding, domain trust, DHCP and resource permissions.

Best for: headquarters, branches, multiple domains and private links
  • Cross-domain trust
  • Shared-resource access between domains
  • DNS and DHCP coordination
View Service →
DOC
11

IT Project Plans and Delivery Documentation

Turn technical work into maintainable deliverables with a clear baseline, scope, change record, test evidence, rollback plan and operational handover.

Best for: network, AD, NAS, backup and VDI projects
  • Design and implementation plans
  • Change, test and rollback records
  • Acceptance and operational handover
View Service →
CHECK
12

Enterprise IT Assessment and Remediation Roadmap

Inventory the existing environment, identify operational and security risks, prioritize remediation and produce a practical roadmap rather than changing systems blindly.

Best for: IT handover, remediation planning and pre-launch reviews
  • Asset and topology baseline
  • Risk and dependency review
  • Prioritized remediation roadmap
View Service →

Common enterprise IT questions

Use the symptom or affected system to open the most relevant service page.

enterprise IT maintenanceActive Directory maintenanceremote access butshared drive permission handlingNASbackup and recovery planlegacy server migrationWAN traffic routing configuration
Technical Capability

Practical, evidence-based technical support

Enterprise IT incidents often span servers, networks, security policies, permissions, databases and backups. We identify the affected path, define the change boundary and leave maintainable records instead of applying isolated fixes.

Suitable issuesCross-system faults, permission disorder, remote-access failures, legacy-server migration, recovery validation, VDI and endpoint-policy problems.
No unsupported promisesWe review versions, business impact, backup and change risk before recommending remote work, on-site work or a controlled project.
01

Systems and identity

Windows Server, Active Directory, DNS, DHCP, Group Policy, accounts, sharing, printing and endpoint policy.

02

Networks and security boundaries

Firewalls, VPN, VLANs, branch connectivity, Multi-WAN, SD-WAN, ports, routing and remote-work paths.

03

Data and business continuity

NAS, file sharing, NTFS permissions, SQL Server, snapshots, independent backups, recovery drills and legacy protection.

04

Virtualization and delivery records

VMware Horizon, ESXi or PVE, VDI data boundaries, implementation guides, topology, policy and acceptance records.

Current-state reviewTopology, servers, accounts, permissions, policies and business access paths
Fault-path analysisCross-check systems, networks, security, data and endpoints
Implementation and validationApply controlled changes, verify results and document risk
Delivery recordsProvide handling notes, configuration descriptions and maintenance recommendations
Service Area

On-site service in Zhejiang, Shanghai and Jiangsu; remote support elsewhere

We support enterprise servers, networks, firewalls, remote access, Active Directory, NAS permissions, backup and recovery, VDI and legacy systems. On-site work can be arranged in Zhejiang, Shanghai and Jiangsu; other regions are supported remotely after assessment.

Zhejiang enterprise IT servicesShanghai enterprise IT supportJiangsu enterprise IT servicesServer and network maintenanceRemote enterprise IT support
Zhejiang enterprise IT services

On-site and remote support for Hangzhou, Ningbo, Wenzhou, Shaoxing, Jiaxing, Huzhou, Jinhua, Taizhou and Lishui, covering servers, networks, Active Directory, NAS, backup and VDI.

View Zhejiang services →
Shanghai enterprise IT support

Support for Shanghai offices, branches, manufacturers, e-commerce and trading companies, including servers, networks, remote access, firewall policies, sharing permissions and recovery.

View Shanghai services →
Jiangsu enterprise IT services

Support for Suzhou, Nanjing, Wuxi, Changzhou, Nantong and Kunshan, including infrastructure maintenance, Active Directory, NAS permissions, backup and traffic steering.

View Jiangsu services →
On-site work can be arranged in Zhejiang, Shanghai and Jiangsu when required. Other regions can be assessed and supported remotely.
Urgent Problems

Common urgent enterprise issues

Typical requests include login failures, inaccessible shared drives, remote-access problems, backup warnings, storage risks and legacy-system incidents.

remote

Remote access connects but internal applications do not open

Check DNS, routing, firewall policy, server gateways and return paths.

permission

Some users cannot access a share while others have excessive rights

Review share permissions, NTFS rights, security groups, NAS accounts and leaver access.

legacy system

A legacy ERP or SQL server cannot be safely shut down

Create a backup or image, assess dependencies, define migration tests and prepare rollback.

policy

Domain sign-in is slow or policy and printers do not apply

Check Active Directory, DNS, GPO results, print services, drivers and client events.

materials

USB, printing or VDI file transfer needs tighter control

Apply role-based policies and documented exceptions without blocking normal work.

traffic routing

Live streaming, office and cross-region traffic interfere with each other

Plan Multi-WAN, SD-WAN, QoS, policy routes and workload separation.

connectivity

Sites are connected but cross-domain authentication fails

Review trusts, conditional DNS forwarding, required ports, permissions and time synchronization.

storage

NAS capacity is growing but snapshots, backup and permissions are unclear

Organize datasets, shares, snapshots, independent backups and recovery paths.

project delivery

An IT project finished without topology, policy or acceptance records

Create topology, IP, VLAN, account, permission, port, backup and handover documents.

Process

Review the environment before defining scope and quotation

We confirm affected systems, change risk, backup status, maintenance windows and required deliverables before work begins.

01

Describe the issue

Provide exact symptoms, screenshots, occurrence time and affected business functions.

02

Review the environment

Confirm servers, networks, firewalls, accounts, permissions, databases and endpoints.

03

Agree the scope

Decide whether the work is remote assessment, on-site handling, targeted remediation or ongoing maintenance.

04

Record the result

Document changes, validation, risks, rollback and follow-up recommendations.

Cases

Representative service scenarios

The following anonymized scenarios illustrate common symptoms and investigation directions; actual handling depends on the customer environment.

AD / GPO

GPO drive and printer deployment is inconsistent

We identify the affected path, collect evidence, confirm business impact and make controlled changes with validation and rollback preparation.

A Horizon VDI data-drive root cannot create files

We identify the affected path, collect evidence, confirm business impact and make controlled changes with validation and rollback preparation.

remote access

Remote access connects but ERP and shares are unreachable

We identify the affected path, collect evidence, confirm business impact and make controlled changes with validation and rollback preparation.

sharing permission

Former employees retain access and some departments have excessive rights

We identify the affected path, collect evidence, confirm business impact and make controlled changes with validation and rollback preparation.

backup and recovery

NAS snapshots exist but there is no independent backup

We identify the affected path, collect evidence, confirm business impact and make controlled changes with validation and rollback preparation.

database

SQL Server log growth stops ERP writes

We identify the affected path, collect evidence, confirm business impact and make controlled changes with validation and rollback preparation.

Knowledge Base

Latest technical articles

Practical troubleshooting sequences for common enterprise IT incidents, with example environments anonymized.

Active Directory and Group Policy

Domain join says “domain not found” or “cannot contact a domain controller”: what should you check?

Troubleshoot domain-join discovery failures in a controlled order: internal DNS, SRV records, required connectivity, time synchronisation, computer objects, and the NetSetup log.

Read the full article →
Active Directory and Group Policy

Why must a computer use Active Directory DNS before joining the domain instead of a public DNS service?

Active Directory relies on internal DNS and SRV records to locate domain services. This article explains client DNS settings, forwarders, secondary DNS, and safe public-name resolution.

Read the full article →
Active Directory and Group Policy

How to safely repair “The trust relationship between this workstation and the primary domain failed”

A workstation trust failure usually means the local machine-account secret no longer matches Active Directory. Confirm local access, profiles, and the secure channel before resetting or rejoining.

Read the full article →
Windows Server and file permissions

A Windows share allows folder creation but not file creation or saving: which permission is missing?

This symptom usually comes from mismatched advanced NTFS rights and inheritance scope. Compare file creation, write data, folder creation, deletion, and ownership permissions.

Read the full article →
Windows Server and file permissions

Share permissions vs NTFS permissions: why can access still be denied after permission is granted?

Network file access is constrained by both share and NTFS permissions, plus group membership, deny entries, inheritance, and cached credentials. Use this sequence to calculate effective access.

Read the full article →
Active Directory and Group Policy

The same Group Policy applies to some computers but not others: a complete troubleshooting sequence

When a GPO applies inconsistently, compare OUs, policy versions, security and WMI filters, DNS, SYSVOL, client results, and events instead of relying on gpupdate alone.

Read the full article →

Send the symptoms first so we can assess the right handling method.

Useful information includes screenshots, versions, topology, device models, affected users, backup status and remote-access availability.

Service modeRemote / on-site / project
PricingConfirmed after scope review
Best fitEnterprises / factories / branches
Contact+86 176 0588 1192