Firewall Wizards mailing list archives

Re: DHCP in a corporate MS environment - Security Risk?


From: Gary Flynn <flynngn () jmu edu>
Date: Thu, 23 Jan 2003 15:03:34 -0500

Ben Nagy wrote:
Hi Patrick,

Do you have any links or references to good solutions along these lines? I
remember many years ago now people were working on stuff that gave you a
DHCP lease on a temp VLAN (so you could get IP) then authenticated you, then
gave you another lease on a different VLAN as per your credentials. The
problem was that it was really convoluted, and DHCP/database server failure
was a show stopper.

It would be great to be able to so "user-based" dhcp where you can put
people into pools of dynamic addresses based on login, I just didn't think
it was workable.

You mean something like this:
http://www.cisco.com/univercd/cc/td/doc/product/rtrmgmt/cw2000/urt/uurt/ur1plan.htm


--
Gary Flynn
Security Engineer - Technical Services
James Madison University

Please R.U.N.S.A.F.E.
http://www.jmu.edu/computing/runsafe

_______________________________________________
firewall-wizards mailing list
firewall-wizards () honor icsalabs com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards


Current thread: