Networking Forums

Networking Forums > Computer Networking > Windows Networking > Scripts for users on different subnet

Reply
Thread Tools Display Modes

Scripts for users on different subnet

 
 
spookman
Guest
Posts: n/a

 
      06-26-2006, 08:35 PM
Hello.. Sorry if this appears to be in the wrong group, but I thought I
would try here first.. We have users which are on a different subnet, are
members of our domain (W2k3) but don't directly log into our domain; they use
our Exchange server (2k3) for e-mail, etc. and authenticate this way to get
their e-mails. So all the authentication is done via Outlook (NTLM) to get
e-mail.

The place I work for is looking for a way to run a script, like a logon
script, on the machines to ensure they're running the latest AV defs, etc.
since they are coming onto our network to get e-mail and such.

Anyone know of a way to setup something like Network Access Quarentine
Control (NAQC) for them WITHOUT having them do it via RAS? Currently,
they're just being routed in to get access to the exchange server.
 
Reply With Quote
 
 
 
 
Louis Vitiello Jr.
Guest
Posts: n/a

 
      06-27-2006, 02:33 AM
Greetings,

If the workstations are not logging into the domain there is no way to pass
down rules and policies, and without that function the ability to force an
application (script). If the users are only connecting to the Exchange
server and have no other access to your network then you might want to
consider investing in a Exchange Level antivirus product. This will ensure
that no users are passes viruses through your server.

Not to say what your asking is impossible, there might be a third party
solution that can check a computer, not on a domain, for a list of prereqs
before assigning it an IP. Maybe someone else can be more insightful.

Good luck,
--
Louis Vitiello Jr.
------------------------------
MCSE, MCSA, MCP, A+/N+
ERCP XP Pro / Net Concepts


"spookman" <(E-Mail Removed)> wrote in message
news:F6104ED2-D1ED-4003-813D-(E-Mail Removed)...
> Hello.. Sorry if this appears to be in the wrong group, but I thought I
> would try here first.. We have users which are on a different subnet, are
> members of our domain (W2k3) but don't directly log into our domain; they
> use
> our Exchange server (2k3) for e-mail, etc. and authenticate this way to
> get
> their e-mails. So all the authentication is done via Outlook (NTLM) to
> get
> e-mail.
>
> The place I work for is looking for a way to run a script, like a logon
> script, on the machines to ensure they're running the latest AV defs, etc.
> since they are coming onto our network to get e-mail and such.
>
> Anyone know of a way to setup something like Network Access Quarentine
> Control (NAQC) for them WITHOUT having them do it via RAS? Currently,
> they're just being routed in to get access to the exchange server.



 
Reply With Quote
 
spookman
Guest
Posts: n/a

 
      06-27-2006, 02:53 PM
Hello,

Thanks for the reply. Yes, we are running an anti-virus product on the
exchange server, but we sometimes do get things that slip through; not very
often though. And as you know, end-users do crazy things. One of which is
the outside sites which are using our exchange server for e-mail, uses a lot
of USB keys, etc.

I was looking at going the local VBS script route if there wasnt' any other
way.

Thanks.. -Jeff


"Louis Vitiello Jr." wrote:

> Greetings,
>
> If the workstations are not logging into the domain there is no way to pass
> down rules and policies, and without that function the ability to force an
> application (script). If the users are only connecting to the Exchange
> server and have no other access to your network then you might want to
> consider investing in a Exchange Level antivirus product. This will ensure
> that no users are passes viruses through your server.
>
> Not to say what your asking is impossible, there might be a third party
> solution that can check a computer, not on a domain, for a list of prereqs
> before assigning it an IP. Maybe someone else can be more insightful.
>
> Good luck,
> --
> Louis Vitiello Jr.
> ------------------------------
> MCSE, MCSA, MCP, A+/N+
> ERCP XP Pro / Net Concepts
>
>
> "spookman" <(E-Mail Removed)> wrote in message
> news:F6104ED2-D1ED-4003-813D-(E-Mail Removed)...
> > Hello.. Sorry if this appears to be in the wrong group, but I thought I
> > would try here first.. We have users which are on a different subnet, are
> > members of our domain (W2k3) but don't directly log into our domain; they
> > use
> > our Exchange server (2k3) for e-mail, etc. and authenticate this way to
> > get
> > their e-mails. So all the authentication is done via Outlook (NTLM) to
> > get
> > e-mail.
> >
> > The place I work for is looking for a way to run a script, like a logon
> > script, on the machines to ensure they're running the latest AV defs, etc.
> > since they are coming onto our network to get e-mail and such.
> >
> > Anyone know of a way to setup something like Network Access Quarentine
> > Control (NAQC) for them WITHOUT having them do it via RAS? Currently,
> > they're just being routed in to get access to the exchange server.

>
>
>

 
Reply With Quote
 
 
 
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Routing - Computers on either subnet have problems finding PCs on the other subnet ZZYZX Windows Networking 2 03-26-2011 01:01 AM
Prevent users from accessing local subnet while VPN'ed in? Trevor Windows Networking 2 03-16-2006 11:00 PM
PROFTPD: Some users cannot upload files, some users cannot get directory listing Marc Linux Networking 0 10-24-2003 06:18 AM
PROFTPD: Some users cannot upload files, some users cannot get directory listing Marc Linux Networking 1 10-24-2003 05:50 AM
subnet to subnet routing question S James Linux Networking 0 09-04-2003 03:37 PM



1 2 3 4 5 6 7 8 9 10 11