How many servers are in your DMZ? |
Mark 391 Posts ISC Handler Oct 3rd 2011 |
Thread locked Subscribe |
Oct 3rd 2011 9 years ago |
It's a bit ad-hoc at the moment!
We use OCS Inventory NG for both it's inventory and deployment functionality. Two machines in every subnet are automatically designated to run "IPDiscover" and routinely scan their subnets. All "uninventoried" devices appear on a report that is checked "fairly" regularly, but there is no automatic alerting. We also keep a list of MAC addresses for all wireless devices permitted to connect to our network and use MAC whitelists on the access points. Opening the "Microsoft Windows Network" page also shows up any new workgroups that don't match our own. Finally, I often use "Angry IP Scanner" to search for devices that have a connectivity problem - and I normally keep an eye out for extra devices. Our network is just small enough that I know what should be there - and what shouldn't! We use Sophos which has NAC and USB device control - neither of which we have got around to implementing yet! |
Anonymous |
Quote |
Oct 3rd 2011 9 years ago |
Sign Up for Free or Log In to start participating in the conversation!