Educause Security Discussion mailing list archives

Re: Network access control


From: "Julian Y. Koh" <kohster () NORTHWESTERN EDU>
Date: Sun, 21 Jan 2007 13:01:12 -0600

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

At 12:51 -0500 01/21/2007, Wes Young wrote:
how many of you utilize some sort of
IDS / Auto-quarantine feature within your solutions (and with what
solution)?

This week we're adding auto-quarantining if hosts on our dorm network fail
our automated continuous Nessus scans.  Our Nessus boxes use the same set of
plugins that our NetPass system uses on registration.  Obviously there are a
number of ways that a vulnerable host can pass that scan and get on the
network later, so this will help us catch those boxes with these later scans
and dump them back into quarantine.


-----BEGIN PGP SIGNATURE-----
Version: PGP Desktop 9.0.6 (Build 6060)
Comment: <http://bt.ittns.northwestern.edu/julian/pgppubkey.html>

iQA/AwUBRbO4eA5UB5zJHgFjEQLFUQCg8Ftd6LkVnmu7w2sih3RTWyjckicAnjOh
CfsL96W3BjS2sZWwmJfq4Trs
=t29C
-----END PGP SIGNATURE-----

--
Julian Y. Koh                         <mailto:kohster () northwestern edu>
Network Engineer                                   <phone:847-467-5780>
Telecommunications and Network Services         Northwestern University
PGP Public Key:<http://bt.ittns.northwestern.edu/julian/pgppubkey.html>

Current thread: