Re: LAN Security - Stopping unknown machines accessing the LAN
- From: "Susan Bradley, CPA aka Ebitz - SBS Rocks [MVP]" <sbradcpa@xxxxxxxxxxx>
- Date: Sun, 30 Jul 2006 23:40:12 -0700
If you have ISA 2k4 in a single nic setup...it's not doing anything firewallishy for you.
What's your "real" hardware firewall... as currently it sounds like you allow any connections outbound no matter what.
In a 2nic setup or with a hardware firewall that needs authentication, only those workstation that authenticated could go out the door.
A SBS server does.. but not with one nic card.
Alan wrote:
Hi All,.
I am not sure whether this is an SBS question or not. If not, feel free to (politely!) tell me where to go.
I have observed that if I place an 'unknown' workstation on our LAN it will, for example, connect to the internet. For demo purposes I used a fresh install of Linspire 5.0 since I had the install CD and I don't have a spare Windows license available right now (but I assume this would work with many other OSs).
It connected to the internet no problem.
Our SBS 2003 Prem server is the DC and runs ISA 2004. It is in single NIC configuration (which is why I wonder if I am asking the question in the right forum).
Can the SBS server prevent an unknown client from accessing the LAN and external resources (the internet in general)? Obviously the unknown machine cannot join the domain unless given permission by an Admin, but is the server and the other domain clients on the LAN at risk from this machine (and by extension from something nasty that it 'contracts' from the net)? Does the SBS 2003 Prem server 'protect' itself and its domain clients from such a machine?
I know that we shouldn't allow other machines to be connected to the LAN, but I am just trying to understand the risks and potential for damage if a user decides to do something like that - all in naivete as they always do of course!
Thanks,
Alan.
- Prev by Date: Re: Why is the server accessing the LAN nic to POP mail, given this summary?
- Next by Date: Re: How to monitor live internet use - ISA 2004
- Previous by thread: RE: Desktop goes blank after selecting Lock from Loggin Screen
- Next by thread: Re: LAN Security - Stopping unknown machines accessing the LAN
- Index(es):
Relevant Pages
|