Educause Security Discussion mailing list archives

Re: HEOA Question


From: "Bulanda, Dave G" <DGBulanda () INDIANATECH EDU>
Date: Mon, 31 Jan 2011 10:24:35 -0500

Bill,

I have been using NAT on my perimeter for about 10 years...  I logged the translations to a syslog server. Then match 
outside to inside addresses for the time. All my students are registered with PacketFence NAC. Just look up the inside 
translation address to the Packetfence logs/interface (sometime against DHCP logs to verify). The process can suck... 
but I can usually process a notice fairly quickly. I don't have to handle very many notices since we lay it on the 
Freshman about using file-sharing. Plus the small fine for violation helps a bit.

David Bulanda
Network Services Manager
dgbulanda () indianatech edu<mailto:dgbulanda () indianatech edu>
Indiana Tech<http://www.indianatech.edu/>


From: The EDUCAUSE Security Constituent Group Listserv [mailto:SECURITY () LISTSERV EDUCAUSE EDU] On Behalf Of William 
Derwostyp
Sent: Monday, January 31, 2011 9:44 AM
To: SECURITY () LISTSERV EDUCAUSE EDU
Subject: [SECURITY] HEOA Question

I need some input.
Here at USM the students are segregated to a wireless network that is now behind a single address(NAT). This has caused 
a problem with responding to RIAA notices as we cannot tie the notice to a specific user on the network which in turn 
affect the compliance to the "Higher Education Opportunity Act" (HEOA).

I am going to assume that there are other universities that use the NAT process to control traffic on their perimeter 
and use non-routable addresses on the internal network. Is there any tool or application I can use that will help to 
tie the notices back to the person without having to go back to public addressing?

William (Bill) Derwostyp,
CISSP, G7799, GCIH, GSNA, GSLC, GSPA, GSEC, CCNA, CCSE
Technology Security Officer University of Southern Mississippi
william.derwostyp () usm edu<mailto:william.derwostyp () usm edu>
Office: 601-266-5416

[cid:image001.jpg@01CBC12F.40B0E6B0][cid:image002.jpg@01CBC12F.40B0E6B0]
Confidentiality Note: The information contained in this e-mail and/or document(s) attached is for the exclusive use of 
the individual named above and may contain confidential, privileged, and non- disclosable information. If you are not 
the intended recipient, you are hereby notified that you are strictly prohibited from reading, photocopying, 
distributing or otherwise using this e-mail or contents in any way. If you have received this transmission in error, 
please notify me immediately.





Current thread: