university of montana missoula adam ormesher chase maier n.
Download
Skip this Video
Loading SlideShow in 5 Seconds..
DirectConnect & UM’s Network Access Control PowerPoint Presentation
Download Presentation
DirectConnect & UM’s Network Access Control

Loading in 2 Seconds...

play fullscreen
1 / 31

DirectConnect & UM’s Network Access Control - PowerPoint PPT Presentation


  • 103 Views
  • Uploaded on

University of Montana - Missoula Adam Ormesher & Chase Maier. DirectConnect & UM’s Network Access Control. Background Information. We provide internet to about 3000 residents All ten dorms are currently wired-only connections NAT – Not enough forward facing IPs

loader
I am the owner, or an agent authorized to act on behalf of the owner, of the copyrighted work described.
capcha
Download Presentation

PowerPoint Slideshow about 'DirectConnect & UM’s Network Access Control' - jillian-foley


An Image/Link below is provided (as is) to download presentation

Download Policy: Content on the Website is provided to you AS IS for your information and personal use and may not be sold / licensed / shared on other websites without getting consent from its author.While downloading, if for some reason you are not able to download a presentation, the publisher may have deleted the file from their server.


- - - - - - - - - - - - - - - - - - - - - - - - - - E N D - - - - - - - - - - - - - - - - - - - - - - - - - -
Presentation Transcript
background information
Background Information
  • We provide internet to about 3000 residents
  • All ten dorms are currently wired-only connections
  • NAT – Not enough forward facing IPs
  • Outside connection managed by Central IT – Not us
ip address pools
IP Address Pools
  • Each residence hall has two designated pools of IP addresses for use by clients.
    • “dirty pool” not registered or banned
      • 10.247.__.__
    • “clean pool” devices which have been registered and are able to access the Internet and network resources.
      • 10.248.__.__
network level restrictions
Network Level Restrictions
  • Each switch blocks outbound DHCP Offers on all switch interfaces.
    • A single exception is necessary allowing our approved DHCP server to provide devices with leases.
    • This helps alleviate problems caused by students plugging in routers backwards which compete with our DHCP server.
dcohome uses
DCOHome - Uses
  • Custom web application containing:
    • Residence Halls Switch Port Control
    • Residential DHCP Backend Data Store
    • Student Housing Records
dcohome student info
DCOHome – Student Info
  • Student Personal Information
    • Student ID, NetID, Name, Email, Phone #
  • Housing Information
    • Dorm & Room #
  • The above information is updated daily from Banner for students living in our residence halls.
dcohome registration
DCOHome – Registration
  • Each device that is connected to the network is given a DHCP lease based on MAC Address.
  • Each device is assigned to an existing student.
  • Game consoles are manually registered by our employees.
dcohome ban methods
DCOHome – Ban Methods
  • Using the ban system we are able to:
    • Ban specific MAC Addresses
    • Ban all devices registered to a student.
  • Banned machines are returned to the “dirty pool.”
dcohome ban reasons
DCOHome – Ban Reasons
  • Student conduct violations
  • DMCA violations
  • Network Impacting Infections
  • Malfunctioning hardware
  • Unauthorized hardware
dcoweb overview
DCOWeb – Overview
  • DCOWeb provides the following:
    • DHCP Server
    • Web Server
    • DNS Server
dcoweb dhcp server
DCOWeb – DHCP Server
  • Developed using Java by our internal programming team.
  • Communicates with DCOHome using XML.
dcoweb web server
DCOWeb – Web Server
  • Contains pages with:
    • Instructions to be followed to register.
    • Commonly downloaded files.
      • Windows Service Packs
      • .NET Installers
      • Antivirus & Antimalware Utilities
dcoweb dns server
DCOWeb– DNS Server
  • Computers in the “dirty pool” are assigned DCOWeb as their DNS server.
  • All DNS lookups sent to DCOWeb resolve to the IP of DCOWeb(10.248.242.55).

What is IP for “www.google.com”?

10.248.242.55 (DCOWeb)

Client In Dirty Pool

DCOWeb

overview
Overview

DCOWeb

DCOHome

Student info

DHCP log

Port status

DHCP Server

DNS Server

Hosted Files

Client

(Student machine)

questions
Questions?
  • www.resnetsymposium.org/rspm/evaluation/