Re: Blocking Access to Non-domain computers

From: Ansgar -59cobalt- Wiechers (bugtraq_at_planetcobalt.net)
Date: 08/23/04

  • Next message: Dan Tesch: "Re: unable to join domain from dmz"
    Date: Mon, 23 Aug 2004 20:19:46 +0200
    To: security-basics@securityfocus.com
    
    

    On 2004-08-19 Brian Gehrke wrote:
    > I am running a W2K domain, using DHCP. Is it possible to block
    > non-domain computers from getting an IP address from the DHCP server,
    > so they will not be able to access the Internet through the network.

    You could use static DHCP, so only those clients listed in your DHCP
    server's configuration will be supplied with an address. However, you
    will have to make sure all your domain computers are added to the DHCP
    server's config.

    Regards
    Ansgar Wiechers

    -- 
    "Those who would give up liberty for a little temporary safety
    deserve neither liberty nor safety, and will lose both."
    --Benjamin Franklin
    ---------------------------------------------------------------------------
    Computer Forensics Training at the InfoSec Institute. All of our class sizes
    are guaranteed to be 12 students or less to facilitate one-on-one
    interaction with one of our expert instructors. Gain the in-demand skills of
    a certified computer examiner, learn to recover trace data left behind by
    fraud, theft, and cybercrime perpetrators. Discover the source of computer
    crime and abuse so that it never happens again.
    http://www.infosecinstitute.com/courses/computer_forensics_training.html
    ----------------------------------------------------------------------------
    

  • Next message: Dan Tesch: "Re: unable to join domain from dmz"

    Relevant Pages

    • Fwd: Re: [SLE] DHCP problems using cable modem
      ... Dylan, ... servers and search list via DHCP." ... > temporary safety, deserve neither liberty nor ... temporary safety, ...
      (SuSE)
    • Re: A little FYI
      ... > fix for a different problem or end up making the same configuration ... Maybe faulty network equipment, ... > to look at what might interfere with DHCP. ... you were not here as I was trying to get the card to stay ...
      (comp.security.firewalls)
    • [NEWS] Cisco IOS DHCP Blocked Interface DoS
      ... Cisco IOS devices running several branches of Cisco IOS that have Dynamic ... queue becomes blocked when receiving specifically crafted DHCP packets. ... configuration information from the DHCP server via the network. ... On a blocked Ethernet interface, ...
      (Securiteam)
    • Re: DHCP Problem causing ip to be 169.X.X.X and not 192.168.X.X
      ... their configuration to limit the number of clients they will serve DHCP to. ... If your router was set up by your ISP, they may have set this to just the ... and use what it is using for DNS servers. ...
      (microsoft.public.windowsxp.network_web)
    • Re: Time Capsule configuration problem
      ... It's a NetGear DM111P if that makes any difference. ... It has a DHCP ... a summary of the configuration you will need to set up is as ... The Netgear modem's DHCP server should be turned off. ...
      (uk.comp.sys.mac)