Re: How to resrict administrative access

boomboom999_at_yahoo.com
Date: 09/14/05


Date: 13 Sep 2005 15:20:18 -0700

Mike,

Thank you for your comments but it is not what exactly we are looking
for.
We want to restrict logon attempts to an authorized subnet/computers as
a secondary mesure to prevent some scenario where the admin passwords
are stolen through a social engineering attack and silently used during
some time.

In a big network where all the security management is based on Active
Directory integrity, this scenario will have a devastating impact.

Actually, we are playing with restricting access to the INTERACTIVE
user and putting IPSec filters on RDP ports. However, the main drawback
of this approach is that we cannot use anymore remote tools and
utilities like "net use" etc.

Any ideas will be appreciated.