Networking Forums

Networking Forums > Computer Networking > Windows Networking > Only domain members obtain IP

Reply
Thread Tools Display Modes

Only domain members obtain IP

 
 
bbry
Guest
Posts: n/a

 
      09-17-2004, 05:20 PM
I would like to restrict my local area network
infastructure to be alittle more secure. I would like my
Domain controller / dhcp server to release an ip to pcs
that are members of the domain only. Can someone tell me
how or where to read up on this.

Thanks
 
Reply With Quote
 
 
 
 
Miha Pihler
Guest
Posts: n/a

 
      09-17-2004, 06:10 PM
Mike

There is no easy way to do this. Clients use broadcasts to discover DHCP
server and there is no authentication process in this.

This would be possible using IEEE 802.1x. "Problem" with this solution is
usually the price and technical implementation. Among other things you need
network switches that support IEEE 802.1x, clients that support it (e.g.
Windows 2000 SP4 or newer operating system) and database to check against
(e.g. active directory). Before client is allowed on the network it has to
authenticate with network switch. If the client sends valid user information
(checked against active directory) the client get e.g. DHCP assigned IP.

There are few more things you can do for safety of your network. Don't patch
all network outlets to your network. Patch only the ones in use. Implement
IPSec. Only computers that are in domain will be able to participate in
IPSec protected network (if you configure it so). So any outside computers
that would be plugged on your network would not be able to attack your
server or infect them with e.g. worms/virus.

Feel free to post back if you have any additional question.

Mike

"bbry" <(E-Mail Removed)> wrote in message
news:1a2601c49cda$9b07f4d0$(E-Mail Removed)...
> I would like to restrict my local area network
> infastructure to be alittle more secure. I would like my
> Domain controller / dhcp server to release an ip to pcs
> that are members of the domain only. Can someone tell me
> how or where to read up on this.
>
> Thanks



 
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Re: Windows cannot obtain the domain controller name for your computer network. (The specified domain either does not exist or could not be contacted. ). Group Policy processing aborted. Ace Fekay [MVP-DS, MCT] Windows Networking 1 01-10-2010 11:08 PM
L2TP/IPsec VPN with certificates for non-domain members Pieman Windows Networking 0 07-04-2007 10:22 AM
Will server provide DHCP ONLY to domain members? Joe Befumo Windows Networking 6 01-18-2007 08:05 PM
DHCP lease only to members of Domain Rich L Windows Networking 1 09-21-2006 10:57 AM
Only allow domain members access to network Richard Windows Networking 8 08-18-2005 01:04 PM



1 2 3 4 5 6 7 8 9 10 11