Network Access Control

 View Only
Expand all | Collapse all

dhcp enforcer - quarantine setup (netmask)

  • 1.  dhcp enforcer - quarantine setup (netmask)

    Posted Mar 01, 2011 07:13 AM

    Hello All!

    Im having problems setting up the quarantine network with a dhcp enforcer. Just now I'm trying with one dhcp server..everything is working fine...when a client doesn't pass HI it gets a quarantine IP (without default GW) but the problem is it has a mask of 255.255.255.0 (like the IPs in the "good" IP pool) so it can see the rest of the PCs in the LAN! So there isn't much quarantining going on!

    I have read that in Qurantine the Enforcer tells the dhcp server to return a mask of 255.255.255.255 (http://www.symantec.com/business/support/index?page=content&id=TECH102535&locale=en_US) ...Is this automatic or does it have to be configured?

    Please help!



  • 2.  RE: dhcp enforcer - quarantine setup (netmask)
    Best Answer

    Posted Mar 01, 2011 07:51 AM

    Found it!

    You have to enable secure-netmask!!!