Security Basics mailing list archives
RE: Internal POP3 users
From: "David Gillett" <gillettdavid () fhda edu>
Date: Wed, 3 Mar 2004 10:13:16 -0800
Why is it "a major security concern"? Are you supposed to be providing them with connectivity, or not? If you are, DHCP service is kind of the least you can do. Do you have resources that you want to protect, that are not adequately protected by your domain authorizations? What kind of resources are they? If you want to keep them off of the segment where your domain is, then yes, you need to put them on a separate segment and implement some kind of policy enforcement where the segments meet. If you're trying to restrict what they can do with the bandwidth you provide them, that's a different problem with a different set of answers. And what does this have to do with POP3? David Gillett
-----Original Message----- From: Christopher Herrmann [mailto:CHerrmann () oddfellows com au] Sent: Tuesday, March 02, 2004 5:01 PM To: Security-Basics (E-mail) Subject: Internal POP3 users Hi, I have a number of users sharing our Internet connection who do not authenticate to my NT network (they are to all intents and purposes, different companies in the same building). However they all use the same DHCP service (from my NT server). This is a major security concern. What are some of the ways I might separate the traffic generated on their machines from my main network? I understand segmentation is one option, but how do I distinguish between those machines? Should I move the DHCP to the router for instance? Any ideas would be welcome. Christopher Herrmann IT Manager ============================================================== ========== This message has been scanned for spam & viruses by Mail Sleuth. To report SPAM forward the message to: spam () mailsleuth com au Mail Sleuth www.mailsleuth.com.au ============================================================== ========== -------------------------------------------------------------- ------------- Free 30-day trial: firewall with virus/spam protection, URL filtering, VPN, wireless security Protect your network against hackers, viruses, spam and other risks with Astaro Security Linux, the comprehensive security solution that combines six applications in one software solution for ease of use and lower total cost of ownership. Download your free trial at http://www.securityfocus.com/sponsor/Astaro_security-basics_040301 -------------------------------------------------------------- --------------
--------------------------------------------------------------------------- Ethical Hacking at the InfoSec Institute. Mention this ad and get $545 off any course! All of our class sizes are guaranteed to be 10 students or less to facilitate one-on-one interaction with one of our expert instructors. Attend a course taught by an expert instructor with years of in-the-field pen testing experience in our state of the art hacking lab. Master the skills of an Ethical Hacker to better assess the security of your organization. Visit us at: http://www.infosecinstitute.com/courses/ethical_hacking_training.htm ----------------------------------------------------------------------------
Current thread:
- Internal POP3 users Christopher Herrmann (Mar 03)
- RE: Internal POP3 users David Gillett (Mar 03)
- Re: Internal POP3 users steve (Mar 04)
- RE: Internal POP3 users Aditya, ALD [Aditya Lalit Deshmukh] (Mar 04)
- RE: Internal POP3 users Steve McLaughlin (Mar 04)
- RE: Internal POP3 users David Gillett (Mar 03)