Security Basics mailing list archives

Re: Blocking Access to Non-domain computers


From: Oleksandr Darchuk <o.darchuk () wucb lviv net>
Date: Wed, 25 Aug 2004 09:04:36 +0300

Brian Gehrke wrote:
I am running a W2K domain, using DHCP. Is it possible to block non-domain computers from getting an IP address from the DHCP server, so they will not be able to access the Internet through the network.

With Nortel BayStack switches you can try to set up EAPoL with Microsoft RADIUS server. As I know, Microsoft RADIUS works with domain users. But I don't know about other vendors switches. But IMHO if you just want to block access to internet, possible it's better to use Proxy with auth (e.g Squid can auth users from W2k domain)
Possible it helps.
Regards.

---------------------------------------------------------------------------
Computer Forensics Training at the InfoSec Institute. All of our class sizes
are guaranteed to be 12 students or less to facilitate one-on-one
interaction with one of our expert instructors. Gain the in-demand skills of
a certified computer examiner, learn to recover trace data left behind by
fraud, theft, and cybercrime perpetrators. Discover the source of computer
crime and abuse so that it never happens again.

http://www.infosecinstitute.com/courses/computer_forensics_training.html
----------------------------------------------------------------------------


Current thread: