Re: WLAN Security

Tech Tip: Click here to run a free scan for Windows Errors and optimize PC performance

From: Don 'Bear' Wilkinson (bear_at_NOSPAM-lair.org)
Date: 03/20/05


Date: Sat, 19 Mar 2005 16:02:27 -0800


"Jody W" <Jody W@discussions.microsoft.com> wrote in message
news:87FA096E-8761-4DA5-AD35-885BB79A1B12@microsoft.com...
> Is there a policy in AD that can prevent WLAN clients from connecting to
> network resources or even getting a DHCP lease?
> Thanks,
> Jody

To the best of my knowledge, the correct answer is, No. As far as I know,
there's no feature of Windows Server that will allow you to restrict access
to wireless clients in this context. It has no ability to control access to
DHCP. It's wide open.

If you were to pursue controlling access to DHCP leases, you will need
third-party software products or a network switch that is capable of
filtering and controlling access at layer to network protocols.

However with wireless, you can certainly use the ability to filter clients
based on their MAC address. It's a bit of an administrative nuisance, but
if you have only a few wireless clients it's manageable.

HTH,
Bear

-- 
Remove NOSPAM to email me 


Relevant Pages

  • Re: IP address assignment problem
    ... I have a little problem and seek for ur thoughts, let's assume I'm in a very open environment where everyone can very easily try to get his/her laptop on the network and IP addresses are assigned by a DHCP server and we are in a domain environment, how do I prevent machines that are not part of our domain to be assigned an IP address? ... This approach doesn't stop your rogue clients from connecting to other clients, but merely doesn't give them the information they normally need to do so. ... Using 802.1x, your workstations authenticate through the switch to a radius server before they are allowed any connectivity. ... This authentication can use X.509 certificates, computer account credentials from AD, or whatever else you'd normally configure radius to authenticate with. ...
    (Focus-Microsoft)
  • RE: Dropped Client Connections
    ... I understand that the SBS clients will lose ... Do all clients lose network connection at same time? ... Do you have single or double NICs on SBS? ... Modify the registry to disable Receive Side Scaling ...
    (microsoft.public.windows.server.sbs)
  • Re: Please help me "sell" the idea of a more secure network
    ... changes first should bring the network up a notch or two. ... Do the same thing using a wireless notebook from you company. ... show him a PO or invoice for a customer who had an AV ... products, releases, life cycles, etc, all on the individual clients. ...
    (microsoft.public.win2000.active_directory)
  • Re: Please help me "sell" the idea of a more secure network
    ... changes first should bring the network up a notch or two. ... Do the same thing using a wireless notebook from you company. ... show him a PO or invoice for a customer who had an AV ... products, releases, life cycles, etc, all on the individual clients. ...
    (microsoft.public.win2000.active_directory)
  • Multiple Consistent Security Event Logs
    ... to capture Audits for both the Clients n the Servers. ... enabled certain other policies relating to secure Network Communication. ... Object Access, Logon/Logoff, Account Logon, Privilege Use with 'User' varying ...
    (microsoft.public.win2000.security)