Low security in UTM

Форум для огранизационных вопросов
Закрыто
kuangnd
Сообщения: 7
Зарегистрирован: Чт дек 15, 2005 07:27

Low security in UTM

Сообщение kuangnd »

I'm using Netup UTM on FreeBSD. I protected my clients by IP & MAC but some one in my local network can change MAC and they can use Internet from other people.

Forexample:

Client A (IP: 192.168.0.101 00:12:bc:4d:14:af) Internet is On

Thief change his MAC & IP to (192.168.0.101 00:12:bc:4d:14:af) then he can use internet's Client A.

Can you suggest me security for this problem or detect Real MAC from Thief.

* Change MAC from Windows

Thanks verymuch.

Quangnd.

Аватара пользователя
dalex
Сообщения: 1306
Зарегистрирован: Пт янв 21, 2005 11:54

Сообщение dalex »

Use pppoe or vpn with radius authorization.
Or forbid change of adjustments of a network for users in Windows.

kuangnd
Сообщения: 7
Зарегистрирован: Чт дек 15, 2005 07:27

Сообщение kuangnd »

Thank you verymuch for your suggest.

1. You mean use VPN or pppoe with radius authorization?

Can you help me or show me how to config it. The best way pppoe and VPN with radius.

2. Forbid change of adjustments of a network for users in Windows.

How to forbid change? Can you tell me clear?

P/s: Special thanks to dalex.

Sincerly
Quangnd

Аватара пользователя
dalex
Сообщения: 1306
Зарегистрирован: Пт янв 21, 2005 11:54

Сообщение dalex »

1. Sorry, i don't use this.
Maybe this links help you
pppoe server
good windows pppoe client
And search docs with google :-)
2. Remove users from Administrator group and add to User group in Control Panel-Administration-Computer management-Users and groups.

kuangnd
Сообщения: 7
Зарегистрирован: Чт дек 15, 2005 07:27

Сообщение kuangnd »

Thank you verymuch. variant 2 not complete because I don't have permission to delete them accounts. And in my local have 350 clients, everybody can connect to LAN and INET.

I've read UTM 4 Manual with Radius Server. There is command:

"/usr/site - p 20000 -f /var/log/ipacct -r /var/run/ipacctd.pid"

I don't know whereis command /usr/site ?

I downloaded UTM Manual from old.netup.ru

Аватара пользователя
dalex
Сообщения: 1306
Зарегистрирован: Пт янв 21, 2005 11:54

Сообщение dalex »

/usr/site - p 20000 -f /var/log/ipacct -r /var/run/ipacctd.pid"
it's not utm_radius command.
utm_radius command - /netup/utm/bin/
You sale radius separately? If is not present it is possible to use freeradius with utm4.
utm_radius command - /netup/utm/bin/netup_radius/netup_radiusd.
3 variant - use controlled switches 3 level - they allow to adhere the ip address to port.

kuangnd
Сообщения: 7
Зарегистрирован: Чт дек 15, 2005 07:27

Сообщение kuangnd »

I'm interested in 3 Variant. But I don't know how to make with Swith Layer 3 level. You know some one can change IP and MAC to use Internet from other. I don't understand what switch layer 3 can do? Can you explain for me and give me solutions? I lost much traffic till now, I don't have good solutions for security now.

And this command in UTM Manual for what?
"/usr/site - p 20000 -f /var/log/ipacct -r /var/run/ipacctd.pid"

Thank you verymuch dalex.

Sincerly
Quangnd.

Закрыто