Fw: Re: DHCP
- From: "( ( ( belly ) ) )" <belly@xxxxxxxxx>
- Date: Fri, 22 May 2009 18:12:50 -0700 (PDT)
i had this problem last time,
to prevent anyone that is not authenticated in a win2008
domain to access any of company resources.
my solution was to install an ISA proxy server that taking
the authentication from active directory. therefore, only
authenticated user is able to connect the network resources
through this proxy.
in other server such as web, mail server, application
server, i just only allowed ip address of isa/proxy to
access. so even an unauthorized client getting ip address
from dhcp, they're not allowed to do.
may be that can help a bit.
Regards,
_ _ _
| |__ ___| | |_ _
| '_ \/ _ \ | | | | |
| |_) __/ | | |_| |
|_.__/\___|_|_|\__, |
|___/
Belly Rachdianto
Tel:(+62)813-192.168.0.1
(+62)8588-020.9.888
(+60)12-761.20.98
--- On Sat, 5/23/09, auto431078@xxxxxxxxxxxx
<auto431078@xxxxxxxxxxxx>
wrote:
From: auto431078@xxxxxxxxxxxx<auto431078@xxxxxxxxxxxx>
Subject: Re: DHCPsecurity-basics@xxxxxxxxxxxxxxxxx
To: djm@xxxxxxxxxxxxxxx,
Date: Saturday, May 23, 2009, 2:47 AMessentially
The Windows Server 2008 feature I
believe you are referring to is
NAP.
Another possible solution using native Windows
functionality would
be Secure Domain Isolation (SDI). SDI is
a liberal____________________________________________________________________
application of IPSec policy to prevent computers not
authorized to
communicate with clients on your network from doing
so.
________________________my
Hi all,
I am looking for a way to block any PC that plugs into
networkresources
that is not authorized to access any network
resources-servers,
firewalls, etc. Is there a way in DHCP that I can add
reservations
just for the PCs that I want to allow the network
and anynetwork
other pc/laptop that happens to be plugged into the
eitheror
doesn't get an IP address, gets a dummy IP address,
somethingI'm
else? I've heard Windows Server 2008 can do this, but
not sureappreciated.
about 2003. Any suggestions would be greatly
--------------------------------------------------------------------
Best regards,
djm
----Camp
This list is sponsored by: InfoSec Institute
Need to pass the CISSP? InfoSec Institute's CISSP Boot
in bothconcentrated
Instructor-Led and Online formats is the most
exam--------------------------------------------------------------------
prep available. Comprehensive course materials and an
expert
instructor means you pass the exam. Gain a laser like
insight into
what is covered on the exam, with zero fluff!
http://www.infosecinstitute.com/courses/cissp_bootcamp_training.html
----------------------------------------------------------------------------
--
Find toupees to help you look your best! Click now!
http://tagline.hushmail.com/fc/BLSrjkqgXEalrEvMZh90maMOTRUChZXD6thOs8NxlLXGBg8nM1UcN4s98MQ/
This list is sponsored by: InfoSec InstituteCamp
Need to pass the CISSP? InfoSec Institute's CISSP Boot
in both Instructor-Led and Online formats is the mostcourse
concentrated exam prep available. Comprehensive
materials and an expert instructor means you pass theexam.
Gain a laser like insight into what is covered on theexam,
with zero fluff!------------------------------------------------------------------------
http://www.infosecinstitute.com/courses/cissp_bootcamp_training.html
------------------------------------------------------------------------
This list is sponsored by: InfoSec Institute
Need to pass the CISSP? InfoSec Institute's CISSP Boot Camp in both Instructor-Led and Online formats is the most concentrated exam prep available. Comprehensive course materials and an expert instructor means you pass the exam. Gain a laser like insight into what is covered on the exam, with zero fluff!
http://www.infosecinstitute.com/courses/cissp_bootcamp_training.html
------------------------------------------------------------------------
- Prev by Date: Re: Re: Allowing access to social networking... securely?
- Next by Date: Re: Using Private vlans
- Previous by thread: Re: DHCP
- Next by thread: Using Private vlans
- Index(es):
Relevant Pages
|