Y
Y
Yuri Yerusalimsky2016-04-20 16:12:31
Iron
Yuri Yerusalimsky, 2016-04-20 16:12:31

How to isolate network equipment from unauthorized access?

In the lyceum where I work as a technician (consider, a system administrator-enikey worker), there was a need to restrict the access of especially curious children to network equipment, which is placed in some rooms. We are talking about routers that distribute a Wi-Fi network to laptops. The decision is necessary not software, namely "hardware". I think something like a box in which the router is hidden. The box is hung on the wall with self-tapping screws and has a lock so that only I have the keys to the box. Most likely, this is something like an electrical panel, maybe other ideas, offer something suitable, maybe from personal experience. In any case, the important fact is that any software restrictions do not work, you need to physically remove the routers. I must say right away that there can be no talk of moving to another place, the router must remain in the same room where it is.
Attention!It's not so easy to change the IP of the server, a lot of software is tied to it, even outside the building itself and my "jurisdiction". Therefore, you can immediately forget about changing the IP server and not even offer it. And yes, all this was done before me, I would not have made a network like that, but I have to put up with what I have.
=====AHTUNG! AFTERWORD, READ AT DESIRE! ======
You ask, why do I need it? I'm telling. A few days ago, my working day was filled with joy and fun, when suddenly, in broad daylight, the Internet in the building died. It would seem that the hub is dead or something on the server. I changed the hub to other models that were still in stock, I even suspected that if the hub died, I would have to beg for a new one from the authorities, and begging for 20k for a hub and not solving the problem would be worse for me than death. Therefore, I checked the network one by one, connecting gradually to the hub. I will not describe my moves for a long time, but in the end I went to a router that had the same IP address as the server. The fact is that the server on the network has IP = 192.168.0.1. And as many people know, usually routers have the same IP after reset or upon purchase. In total, we have an apparatus dropped by some playful handles, which began to be duplicated with the server and naturally extinguished the normal operation of the Internet. The reset was, as I suspect, in an attempt to connect to the default Wi-Fi, which can also be activated using the button on the back of the router. That is why I am looking for a way to restrict anyone other than myself from accessing the device.
================================================= ====

Answer the question

In order to leave comments, you need to log in

6 answer(s)
C
Cole, 2016-04-20
@Cole

There are metal boxes of different sizes. Just go to a hardware store and look for something that fits. And holes for antennas and cable can be drilled at your discretion.

A
AntHTML, 2016-04-20
@anthtml

What is the problem not to put the routers on the table, but to hang them from the ceiling: they won’t reach their hands openly and the signal will fly better, and increasing 3 meters of the winding by soldering passive POE into it is not a problem at all. As far as I know, in all school-lyceums they do this so that it is impossible to jump to the routers.

S
sharkirill, 2016-04-21
@sharkirill

First you need to stop calling the switch a hub!

I
Ivan, 2016-04-20
@LiguidCool

How people love to come up with hemorrhoids for themselves and then valiantly solve it. You can still to the sounds of a march with a stone face. Okay, lyrics.
Well, I say to you, when will self-taught anikeans learn how to make a grid with a non-standard mask? I hope you at least thought of not sticking routers into the LAN network with a port? And then they will also spam their DHCP.
Make a network for example 192.168.100.0 - even if the router is reset, the Internet will remain.
PS
Self-taught experience, incl. after school work.

V
Vasily, 2016-04-20
@Foolleren

password-protect the router, disassemble and unsolder the hard reset button.

C
CityCat4, 2016-04-20
@CityCat4

There are special wall cabinets of any size with metal and glass doors and locks with a key. Naturally, they should not stand on the table, but hang under the ceiling so that it was impossible to jump. Well, of course, leaving the default grid is five! You have to kill for this...

Didn't find what you were looking for?

Ask your question

Ask a Question

731 491 924 answers to any question