Securing Your Internal Network from Windows?
acacord asks: "I am the Network Admin for a medium-sized law firm (hold the flames, please). We are one of the few Macintosh-based firms left. All of our workstations (near 150) will have been migrated to Mac OS X 10.2.2 by the end of the year. We have a couple users who think that they know more than the IT department and therefore insist that they maintain WinXP boxes on their desks. How should I configure a segment of my network for them, and them only, to make sure that the remainder of my networks are not susceptible to any of their natural security 'features' . Any and all ideas are welcome."
It's never a bad day for blatant M$ bashing. Bash away I say. In fact, this site should become a decicated M$ bashing forum. God only knows there's enough demand for it.
Fire them now before it's too late.
Then LART the idiot who hired them.
Failure to stop this sickness while
you can will result in major pains later.
You are being MICROattacked, from various angles, in a SOFT manner.
Ask Slashdot: Securing Your Internal Network from Windows?
Ask Slashdot: Advanced Job Scheduling?
Salvaging Possessions from Smoke Damage?
Consoldated Network Storage?
How Private Is Your Financial Data?
Does First Sale Still Exists?
Boosting the Cellular Signal, Inside?
Microsoft buys linux
Small LCD Screens?
Plugins for Microsoft Office for OpenOffice Documents?
Green Geeks?
MiniDVs as a Backup Medium?
Multiple Broadband Connections at Home?
Is Client/Server Really Dead?
Starting a Cable Company?
I mean no offence guys and gals,, but all he does is post stories that really shouldnt be!
EXAMPLE
Windows 2000, Samba and Cancelling Print Jobs?
A question that was best suited for a mailing list, not an Ask Slashdot, and answered by myself in the first four comments.
Maybe Cliff should start thinking about the questions before letting them hit the front page of Slashdot.
format c: it works everytime! garenteed to protect your macs from the pc's and it does wunders for the pc's uptime as well
dybia felly dwi a hampster (i think therefore i am a hampster)
At least your question here suggests that they might be. Nothing worse than an overzealous, clueless sysadmin.
Jilles
You can run palmOS on the network for all i care as long as it's not in the demilitarized zone. There are no security holes in any OS that is behind a firewall; this is the "safe" environment. It could me intentionally comprimized by a user on the inside (tcp over http would be a fun way ;) but it's as safe as your firewall from outside attacks.