Securing a Local Network

From: John Roberts (roberts_at_tridecap.com)
Date: 04/13/04

  • Next message: Wolf, Tomas: "Re: Question about wireless lan card drivers...."
    Date: Tue, 13 Apr 2004 12:16:33 -0500
    To: security-basics@securityfocus.com
    
    

    I started working as a sys admin at a small company (about 15 people) and
    they are starting to think it's time to upgrade their network. Right now
    it's just 20 computers, running a mix of xp and 2000 on a local network,
    sharing files, with almost no anti virus and the only protection from the
    outside world is the NAT that the routers perform.

    I've tried to get the to upgrade to a domain, add a file server for backup,
    get some office wide virus protection and maybe even take our email in
    house, but they've balked at the price to setup a legit windows domain. The
    main goals are access control on the local network and virus / worm
    protection. I'm suggesting a Windows domain controller to enforce access
    control and then an centralized anti-virus product. Is this enough, and are
    there other (easier, cheaper, more effective ways) to make sure that only
    the people who need to can access the financial records, the computer people
    can access the all computers when they need to, and some user decides to
    download a cute little program won't destroy the whole network with a virus.

    Is a linux domain controller a solution, considering everything else in
    house is windows? Is an anti-virus solution at the gateway better than an
    anti-virus solution on each desktop? Basically, what's a good way to set up
    a solid base of network security, which can then be expanded on?

    John Roberts

    ---------------------------------------------------------------------------
    Ethical Hacking at the InfoSec Institute. Mention this ad and get $545 off
    any course! All of our class sizes are guaranteed to be 10 students or less
    to facilitate one-on-one interaction with one of our expert instructors.
    Attend a course taught by an expert instructor with years of in-the-field
    pen testing experience in our state of the art hacking lab. Master the skills
    of an Ethical Hacker to better assess the security of your organization.
    Visit us at:
    http://www.infosecinstitute.com/courses/ethical_hacking_training.html
    ----------------------------------------------------------------------------


  • Next message: Wolf, Tomas: "Re: Question about wireless lan card drivers...."

    Relevant Pages

    • RE: Securing a Local Network
      ... How much would it cost if a virus infected one ... be if a competitor hacked into their network and was able to access all ... Third issue is virus protection. ... can infect you from numerous other sources. ...
      (Security-Basics)
    • >>>> REMOVE MY <<<<
      ... Remove Secrurity From My Wireless Network ... How Can I Remove My Virus ... Remove My Search Tool Bar ... Remove My Bluetooth Desktop Icon ...
      (comp.lang.tcl)
    • RE: Using viruses in pen-test
      ... I wonder if there is some type of "fake" virus you could use in this case. ... David A. Swafford, Network Engineer ... I wish to know your views on "Using viruses in pen-test"I ... Cenzic Hailstorm finds vulnerabilities fast. ...
      (Pen-Test)
    • Re: If you used to use Windows or now used Windows less because of FreeBSD why?
      ... > but I've never had any virus or other malware on it. ... > network. ... then build a recommended s/w suite on that. ... toaster, not very expensive crap computers made to be less useful than ...
      (comp.unix.bsd.freebsd.misc)
    • Re: Lost access to home network
      ... virus scans on the CDs ... then beginning again with a fresh install. ... I have 3 computers on a network. ... Then post the logs to an appropriate forum where they specialize in ...
      (microsoft.public.windowsxp.general)