remove inforamtion from dhcp

J

John Hopkins

I get a report form a security audit compnay that audits
our network for vulnerabilities and I keep getting a low
vulernability rating for my dhcp server. Its because they
say the dhcp server gives out sensitive information (like
domains, router info adn WINS servers) and tells me to
remove the extraneous information from the DHCP server.
Does anybody know how to stop a DHCP server from giving
out information like that?
 
G

Gerry Voras

You'll need to configure your DHCP scope to only give out the most critical
information. There are typically lots of settings turned on by default that
you can turn off at the DHCP MMC console.
 
L

Lanwench [MVP - Exchange]

John said:
I get a report form a security audit compnay that audits
our network for vulnerabilities and I keep getting a low
vulernability rating for my dhcp server. Its because they
say the dhcp server gives out sensitive information (like
domains, router info adn WINS servers) and tells me to
remove the extraneous information from the DHCP server.
Does anybody know how to stop a DHCP server from giving
out information like that?

How exactly is your domain suffix, router info (by which I presume you mean
your router/gateway IP) and WINS server address a security vulnerability? If
you need this info dished out to the clients, which I imagine you do, you
can't remove it. Ask them to explain what represents a security
vulnerability and how.
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top