Networking Forums

Networking Forums > Computer Networking > Windows Networking > Only allow domain members access to network

Reply
Thread Tools Display Modes

Only allow domain members access to network

 
 
Richard
Guest
Posts: n/a

 
      08-17-2005, 02:41 PM
Hi

We have a 2003 server network, with 2 domain controllers running DHCP/DNS
etc...

Is there any way we can lock our network so only clients that are members of
the domain are able to gain access the network? Currently people are able to
plug laptops in and get an ip address which is obviously a potential
security hole for us that i'm wanting to plug.

Any advice would be appreciated.

Thanks

Richard


 
Reply With Quote
 
 
 
 
Nospam
Guest
Posts: n/a

 
      08-17-2005, 02:53 PM

"Richard" <rcowell%nospam%@britainusa.com> wrote in message
news:%(E-Mail Removed)...
> Hi
>
> We have a 2003 server network, with 2 domain controllers running DHCP/DNS
> etc...
>
> Is there any way we can lock our network so only clients that are members

of
> the domain are able to gain access the network? Currently people are able

to
> plug laptops in and get an ip address which is obviously a potential
> security hole for us that i'm wanting to plug.
>
> Any advice would be appreciated.
>
> Thanks
>
> Richard
>
>


Manually assign your Local IP addresses and switch off your DHCP server?

Just an idea.

John..


 
Reply With Quote
 
Richard
Guest
Posts: n/a

 
      08-17-2005, 03:07 PM
I'm really looking for something more secure so someone can't bring their
laptop in from home for example, copy the ip settings off their work pc and
plug it into the network.

Rich

>
> Manually assign your Local IP addresses and switch off your DHCP server?
>
> Just an idea.
>
> John..
>
>



 
Reply With Quote
 
Matt Gibson
Guest
Posts: n/a

 
      08-17-2005, 05:01 PM
Look into Certificate based port authentication using Radius or something of
the like.

Matt Gibson - GSEC


 
Reply With Quote
 
Neteng
Guest
Posts: n/a

 
      08-17-2005, 05:55 PM
802.1x port authentication.

"Richard" <rcowell%nospam%@britainusa.com> wrote in message
news:%(E-Mail Removed)...
> Hi
>
> We have a 2003 server network, with 2 domain controllers running DHCP/DNS
> etc...
>
> Is there any way we can lock our network so only clients that are members

of
> the domain are able to gain access the network? Currently people are able

to
> plug laptops in and get an ip address which is obviously a potential
> security hole for us that i'm wanting to plug.
>
> Any advice would be appreciated.
>
> Thanks
>
> Richard
>
>



 
Reply With Quote
 
Frankster
Guest
Posts: n/a

 
      08-17-2005, 07:17 PM
Thanks. I've been watching this too because this is not an uncommon
request. Where do I go to set 802.1x port authentication?

-Frank

"Neteng" <(E-Mail Removed)> wrote in message
news:%(E-Mail Removed)...
> 802.1x port authentication.
>
> "Richard" <rcowell%nospam%@britainusa.com> wrote in message
> news:%(E-Mail Removed)...
>> Hi
>>
>> We have a 2003 server network, with 2 domain controllers running DHCP/DNS
>> etc...
>>
>> Is there any way we can lock our network so only clients that are members

> of
>> the domain are able to gain access the network? Currently people are able

> to
>> plug laptops in and get an ip address which is obviously a potential
>> security hole for us that i'm wanting to plug.
>>
>> Any advice would be appreciated.
>>
>> Thanks
>>
>> Richard
>>
>>

>
>



 
Reply With Quote
 
Todd J Heron
Guest
Posts: n/a

 
      08-17-2005, 07:33 PM
You set that on the switch itself.

--
Todd J Heron, MCSE
Windows Server 2003/2000/NT; CCA
----------------------------------------------------------------------------
This posting is provided "as is" with no warranties and confers no rights


"Frankster" <(E-Mail Removed)> wrote in message
news:d5WdnVAS8sTPEJ7eRVn-(E-Mail Removed)...
Thanks. I've been watching this too because this is not an uncommon
request. Where do I go to set 802.1x port authentication?

-Frank

 
Reply With Quote
 
Frankster
Guest
Posts: n/a

 
      08-18-2005, 04:00 AM
Oh crimeny! You mean you have to have one of those expensive managed
switches to exercise port authentication? Drats! True?

-Frank

"Todd J Heron" <(E-Mail Removed)> wrote in message
news:(E-Mail Removed)...
> You set that on the switch itself.
>
> --
> Todd J Heron, MCSE
> Windows Server 2003/2000/NT; CCA
> ----------------------------------------------------------------------------
> This posting is provided "as is" with no warranties and confers no rights
>
>
> "Frankster" <(E-Mail Removed)> wrote in message
> news:d5WdnVAS8sTPEJ7eRVn-(E-Mail Removed)...
> Thanks. I've been watching this too because this is not an uncommon
> request. Where do I go to set 802.1x port authentication?
>
> -Frank
>



 
Reply With Quote
 
Neteng
Guest
Posts: n/a

 
      08-18-2005, 01:04 PM
True

"Frankster" <(E-Mail Removed)> wrote in message
news:Jt6dnecUqJVampneRVn-(E-Mail Removed)...
> Oh crimeny! You mean you have to have one of those expensive managed
> switches to exercise port authentication? Drats! True?
>
> -Frank
>
> "Todd J Heron" <(E-Mail Removed)> wrote in message
> news:(E-Mail Removed)...
> > You set that on the switch itself.
> >
> > --
> > Todd J Heron, MCSE
> > Windows Server 2003/2000/NT; CCA

>
> --------------------------------------------------------------------------

--
> > This posting is provided "as is" with no warranties and confers no

rights
> >
> >
> > "Frankster" <(E-Mail Removed)> wrote in message
> > news:d5WdnVAS8sTPEJ7eRVn-(E-Mail Removed)...
> > Thanks. I've been watching this too because this is not an uncommon
> > request. Where do I go to set 802.1x port authentication?
> >
> > -Frank
> >

>
>



 
Reply With Quote
 
 
 
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
L2TP/IPsec VPN with certificates for non-domain members Pieman Windows Networking 0 07-04-2007 10:22 AM
Will server provide DHCP ONLY to domain members? Joe Befumo Windows Networking 6 01-18-2007 08:05 PM
DHCP lease only to members of Domain Rich L Windows Networking 1 09-21-2006 10:57 AM
Only domain members obtain IP bbry Windows Networking 1 09-17-2004 06:10 PM
ProFTP is lot limiting access to specified members of group -- suggestions? Alex Linux Networking 2 04-24-2004 10:49 PM



1 2 3 4 5 6 7 8 9 10 11