Slashdot Mirror


Securing Your Internal Network from Windows?

acacord asks: "I am the Network Admin for a medium-sized law firm (hold the flames, please). We are one of the few Macintosh-based firms left. All of our workstations (near 150) will have been migrated to Mac OS X 10.2.2 by the end of the year. We have a couple users who think that they know more than the IT department and therefore insist that they maintain WinXP boxes on their desks. How should I configure a segment of my network for them, and them only, to make sure that the remainder of my networks are not susceptible to any of their natural security 'features' . Any and all ideas are welcome."

6 of 78 comments (clear)

  1. Re:What threat? by redshift-systems · · Score: 0, Troll

    It's never a bad day for blatant M$ bashing. Bash away I say. In fact, this site should become a decicated M$ bashing forum. God only knows there's enough demand for it.

  2. Fire them by SpaceLifeForm · · Score: 1, Troll

    Fire them now before it's too late.
    Then LART the idiot who hired them.
    Failure to stop this sickness while
    you can will result in major pains later.

    --
    You are being MICROattacked, from various angles, in a SOFT manner.
  3. Re:What threat? by majestynine · · Score: 3, Troll
    It's just the editor Cliff.

    Ask Slashdot: Securing Your Internal Network from Windows?
    Ask Slashdot: Advanced Job Scheduling?
    Salvaging Possessions from Smoke Damage?
    Consoldated Network Storage?
    How Private Is Your Financial Data?
    Does First Sale Still Exists?
    Boosting the Cellular Signal, Inside?
    Microsoft buys linux
    Small LCD Screens?
    Plugins for Microsoft Office for OpenOffice Documents?
    Green Geeks?
    MiniDVs as a Backup Medium?
    Multiple Broadband Connections at Home?
    Is Client/Server Really Dead?
    Starting a Cable Company?

    I mean no offence guys and gals,, but all he does is post stories that really shouldnt be!

    EXAMPLE

    Windows 2000, Samba and Cancelling Print Jobs?

    A question that was best suited for a mailing list, not an Ask Slashdot, and answered by myself in the first four comments.

    Maybe Cliff should start thinking about the questions before letting them hit the front page of Slashdot.

  4. there is a simple comand for times like this by JamesCronus · · Score: 0, Troll

    format c: it works everytime! garenteed to protect your macs from the pc's and it does wunders for the pc's uptime as well

    --
    dybia felly dwi a hampster (i think therefore i am a hampster)
  5. maybe your users are right by jilles · · Score: 0, Troll

    At least your question here suggests that they might be. Nothing worse than an overzealous, clueless sysadmin.

    --

    Jilles
  6. uuuhh.. It's called a firewall by Procyon101 · · Score: 0, Troll

    You can run palmOS on the network for all i care as long as it's not in the demilitarized zone. There are no security holes in any OS that is behind a firewall; this is the "safe" environment. It could me intentionally comprimized by a user on the inside (tcp over http would be a fun way ;) but it's as safe as your firewall from outside attacks.