Re: Port Security on switches?



Hello,

The best way is to implement Port-Based security. If the switches support
802.1x authentication then this is the best method for securing your network
(this helps on wired and wireless LANs). I am using it in both scenarios and
I have no problems at all. I am isolating users to a quarantine VLAN and
filtering their access to our network.

If you need additional information please ask.

Predrag


On 3/14/08 7:21 PM, "Albert R. Campa" <abcampa@xxxxxxxxx> wrote:

Do you use it? Is it a good idea network wide? Yes I guess it could be
an administrative pain but I want to see how it is used these days.

Is there an alternative?

My concern is people connecting non authorized laptops to the network
and getting an IP then access. What is a common/effective way to be
notified of any new device connected to the network?

Sure we have physical security(guards 24/7) in our main building,
badge access security in our other building, but visitors such as
vendors, contractors, etc come often and its basically left up to
their sponsors to ensure they dont connect anything to a free port on
the wall.

Comments are appreciated.

Albert



Relevant Pages

  • security questions
    ... Which one of the following security tools allows administrators to easily ... What type of virus typically infects documents created by productivity ... When planning a threat control strategy for a network, ... What is the major barrier to the widespread use of biometric authentication ...
    (comp.security.misc)
  • SecurityFocus Microsoft Newsletter #50
    ... Subject: SecurityFocus Microsoft Newsletter #50 ... Specialist in Microsoft's Security Services Partner Program, ... Network Monitoring for Intrusion Detection ... Relevant URL: ...
    (Focus-Microsoft)
  • << SBS News of the week - Sept 26 >>
    ... And he points to the info you need to put the file on the server in the ... at the network perimeter. ... The Symantec Firewall/VPN and the Gateway Security ... by the firewall at risk. ...
    (microsoft.public.backoffice.smallbiz2000)
  • Re: << SBS News of the week - Sept 26 >>
    ... > And he points to the info you need to put the file on the server in the ... > at the network perimeter. ... The Symantec Firewall/VPN and the Gateway Security ... An attacker can exploit these flaws in tandem via specially ...
    (microsoft.public.backoffice.smallbiz2000)
  • << SBS News of the week - Sept 26 >>
    ... And he points to the info you need to put the file on the server in the ... at the network perimeter. ... The Symantec Firewall/VPN and the Gateway Security ... by the firewall at risk. ...
    (microsoft.public.windows.server.sbs)