Security Basics mailing list archives

RE: blocking file formats in the interior of the network


From: "Szabo, Thomas" <TSzabo () jvc com>
Date: Fri, 10 Nov 2006 10:01:26 -0500

If you are running Windows 2003 server R2 you can use the File Server
Resource Manager to setup File Screens.  There are ways to get around
the file screens (they rely on extensions) but most users are not savvy
enough to do it.


Tom Szabo 

-----Original Message-----
From: listbounce () securityfocus com [mailto:listbounce () securityfocus com]
On Behalf Of Melchior, Raimar
Sent: Thursday, November 09, 2006 5:15 AM
To: security-basics () securityfocus com
Subject: blocking file formats in the interior of the network

Hi All,

I would be very pleased if somebody could give me some advises on my
following question.

We are seeking a solution which can detect/block different file formats
(mp3, wmf, etc) in the interior of the network. There are some people
who think they can put their mp3 and other files on the server share.
Since there are a lot of authorised users who have access to those
shares we can't disallow access to shares on a per user/group basis. 
We want to filter out different fileformats and set thresholds on
allowed traffic.

I assume we need some kind of IDP oder a NAC solution which can look
into the content and blocks those traffic that is going from internal
users to the shares. 

It would be great if you could give me some suggestions on this and what
products/appliances are able of doing that.

Many Thanks.

- Raimar

------------------------------------------------------------------------
---
This list is sponsored by: Norwich University

EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE
The NSA has designated Norwich University a center of Academic
Excellence 
in Information Security. Our program offers unparalleled Infosec
management 
education and the case study affords you unmatched consulting
experience. 
Using interactive e-Learning technology, you can earn this esteemed
degree, 
without disrupting your career or home life.

http://www.msia.norwich.edu/secfocus
------------------------------------------------------------------------
---


---------------------------------------------------------------------------
This list is sponsored by: Norwich University

EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE
The NSA has designated Norwich University a center of Academic Excellence
in Information Security. Our program offers unparalleled Infosec management
education and the case study affords you unmatched consulting experience.
Using interactive e-Learning technology, you can earn this esteemed degree,
without disrupting your career or home life.

http://www.msia.norwich.edu/secfocus
---------------------------------------------------------------------------


Current thread: