Ethernet active, airport also active... how to stop this security problem.

Im not sure if anyone else is noticing this but this is becoming a problem in an enterprise environment.
In the "Network Port Configurations"
I have "Built in Ethernet" as the top, then Airport below that.
The problem is that when the Ethernet is working (active) AND the airport is turned on and connected to a network it is ALSO active, grabbing an IP# and essentially bridging the two networks.
I have tested this many times and it works every time.
For example:
My MBP is connected to the LAN using Ethernet, and traffic is going through the Ethernet and has it's own IP (192.168.0.104) given by DHCP. If I turn on Airport and it finds (and connects) to a network (for example... Linksys? LOL) it will also grab an IP from that Airport network.
Now... if any services (AFS, Windows Sharing, WebSharing..etc) is turned on, you can access the MBP from EITHER network (Since the Airport grabbed and assigned an IP)!!! Even though in the "Network port configurations" it is setup to use the "Built-in Ethernet" first, if it can't find that then use Airport... BUT from what I can see this ONLY applies to Outgoing traffic and not necessarily both incoming and outgoing. It is essentially bridging the two networks
I cannot find a way to prevent this network security gap automatically. (If Ethernet is active then do not connect to any airport network, even if it's in my preferred list or an open network)
Another side effect...in an office environment which has Wireless services on the LAN, if your Airport is turned on and your using your Ethernet connection, your computer is using up 2 IP#'s out of your DHCP pool!
Anyone else having or notice this problem?

If I turn on Airport and it finds (and connects) to a network (for example... Linksys? LOL) it will also grab an IP from that Airport network.
And why would you do this? If you are connected to the LAN through the ethernet port why turn on Airport too? Or why have your Mac connect to an unknown WLAN by default?
When I take my MacBook to school I only have one connection active. On my Mac Mini that is running MacOS Server I have both ports enabled but I guess this is not the most common situation.
Now... if any services (AFS, Windows Sharing, WebSharing..etc) is turned on, you can access the MBP from EITHER network (Since the Airport grabbed and assigned an IP)!!!
People will be able to access your /Library/WebServer/Documents/ folder (or any of the users web documents folder) but that's not a security problem unless you have changed (and messed up) the default Apache definitions, changed the web server documents ownership and/or permissions or have some problematic PHP code or CGIs. As for AFS, Windows Sharing or FTP people won't get into your Mac unless you have and empty password or they know your password.
Even though in the "Network port configurations" it is setup to use the "Built-in Ethernet" first, if it can't find that then use Airport...
When you place the ethernet port first it really means "use this port first and use the others too whenever they are available".
PowerMac G5 1.8   Mac OS X (10.4.9)   MacMini (10.4.9 Server), MacBook 2.0, 2nd internal HD, FW 500GB, FW 80GB

Similar Messages

  • When send email with emoticons to a pc user, emoticons show as an empty box. Also, email content has a symbol on every line. How to stop this from happening?

    When send email with emoticons to a pc user, emoticons show as an empty box. Also, email content has a > symbol on every line. How to stop this from happening?

    Dear Mr. Toad (my all-time favorite ride at Disneyland ;-) ..
    Thanks so much for your detailed reply.. my netbook is in the bedroom, turned off.. I (so far) only use it in the evening, in the bedroom.. I've saved your response, and will try your suggestions, and let you know if they solve the problem I described. I really appreciate you taking the time to post such a detailed reply..
    I can't answer your Thunderbird "configuration" questions, because I'm in the living room, using the crap Vista laptop, on which I plan to install Thunderbird, and then take Windoze Mail out in the street and drive over it a few times.. I'll get back to you one way or the other, and let you know if your instructions solved the problem, or not..
    I don't understand why Thunderbird "out of the box", so to speak, simply doesn't forward HTML emails with embedded graphics, (like Outlook Excess, and Winblows Mail do).. without having to go through those steps. I personally HATE HTML email, but over the years, it's become more and more prevelant.. so it's a problem I must fix..
    Thanks again..
    Harv..

  • How to stop this multiple entry against same condition type in pricing

    My client is using manual condition type for the basic price "ZBPR". Now system allowing multiple entry against this condition type in the pricing screen during order creation i.e in the first line if we put ZBPR 00 , in the second line system allowing to put another value against same ZBPR say for example 2000 & doing all subsequent calculations on the basis of 3000 .which is not at all acceptable by my client .Please suggest how to stop this multiple entry against same condition type

    You have to make the condition type as Mandatory and not manual.
    If you are entering many condition records of the ZPR0 then the latest entry will be taken for further processing for subtotal rebate and total price.
    For all the other entered condition records will have yellow traffic signal which is not active.
    you can assign a routine with the help pf your abaper...
    In the Transaction VOFM  define a requirement such that
    you condition type takes value only one at the time of order entry.
    regards,
    Amlan Sarkar

  • I have been sampling new imported drum loops. And if I adjust region to song or time strecth it updates the audio file in the library. How to stop this? I lost the original setting to one loop. automatically doing it ??

    I have been sampling new imported drum loops. And if I adjust region to song or time strecth it updates the audio file in the library. How to stop this? I lost the original setting to one loop. automatically doing it ??

    This "original file cannot be found" thing happens if the file is no longer where iTunes expects to find it. Possible causes are that you or some third party tool has moved, renamed or deleted the file, or that the drive it lives on has had a change of drive letter. It is also possible that iTunes has changed from expecting the files to be in the pre-iTunes 9 layout to post-iTunes 9 layout,or vice-versa, and so is looking in slightly the wrong place.
    Select a track with an exclamation mark, use Ctrl-I to get info, then cancel when asked to try to locate the track. Look on the summary tab for the location that iTunes thinks the file should be. Now take a look around your hard drive(s). Hopefully you can locate the track in question. If a section of your library has simply been moved, or a drive letter has changed, it should be possible to reverse the actions.
    Alternatively, as long as you can find a location holding the missing files, then you should be able to use my FindTracks script to reconnect them to iTunes .
    tt2

  • My MacBook Pro switches automatically from a program to finder while working.  Can anyone make suggestions on how to stop this?

    My MacBook Pro will automatically jump from a program (Safari, Excel, etc.) to the Finder window.  Can anyone tell me how to stop this?

    Please read this whole message before doing anything.
    This procedure is a diagnostic test. It’s unlikely to solve your problem. Don’t be disappointed when you find that nothing has changed after you complete it.
    The purpose of the test is to determine whether the problem is caused by third-party software that loads automatically at startup or login, by a peripheral device, by a font conflict, or by corruption of certain system caches. 
    Disconnect all wired peripherals except those needed for the test, and remove all aftermarket expansion cards. Boot in safe mode and log in to the account with the problem. Note: If FileVault is enabled on some models, or if a firmware password is set, or if the boot volume is a software RAID, you can’t do this. Ask for further instructions.
    Safe mode is much slower to boot and run than normal, and some things won’t work at all, including sound output and  Wi-Fi on certain models. The next normal boot may also be somewhat slow.
    The login screen appears even if you usually log in automatically. You must know your login password in order to log in. If you’ve forgotten the password, you will need to reset it before you begin. Test while in safe mode. Same problem? After testing, reboot as usual (i.e., not in safe mode) and verify that you still have the problem. Post the results of the test.

  • My iPad 2 only keeps a set number of emails for me to view eventually deleting from the screen. How do stop this as it syncs with my phone and mac book pro neither of which do this?

    My iPad 2 only keeps a set number of emails for me to view eventually deleting from the screen. How do stop this as it syncs with my phone and mac book pro neither of which do this?

    Thanks for that. Much more constructive than the last comment. It's only the restriction code I can't recall, not the access passcode. So I can currently access the device, just not age restricted content. Does that's make a difference? I also wondered if anyone knew how many attempts you get to try to get it right. Now tried 21 times and so far nothing bad has happened but I am concerned I'll eventually be completely locked out of the device. That doesn't seem in the spirit of things though. Surely it's foreseeable that a child could repeatedly try to guess the code so I can't see that it would be right to lock the device down completely in that circumstance, particularly if the access code is being typed in correctly every time.
    Thanks

  • My daughter has an iphone 5s and I have her old 3GS. She receives all my imessages that I rcv or send to other people. Can anyone advise how to stop this? we have removed the 3gs from her itunes account but it hasn't stopped the issue.

    My daughter has an iphone 5s and I have her old 3GS. She receives all my imessages that I rcv or send to other people. Can anyone advise how to stop this? we have removed the 3gs from her itunes account but it hasn't stopped the issue.

    There are a lot of posts in the forums today with people having problems with iMessage.   There was also a published outage yesterday, so it's possible there are still some issues that may be impacting you both.
    I would just wait it out - I'm sure it will be sorted out soon.

  • HT4995 My iPad 2 Location Service works fine but does not work on my home Airport router. How can I fix the problem?

    My iPad 2 Location Service works fine but does not work on my home Airport router. How can I fix the problem?

    lbryan1987 wrote:
    I dont want the button problem solved i need to know how to restore the phone without using that button or going into settings
    You don't in the condition it's in. You will either have to get the phone replaced by Apple or pay a 3rd party to repair it.
    there seriously should be more than two ways to solve this other wise apple is useless and we will never buy another apple product.
    Seriously? It's physically broken!

  • In my macbook pro when composing email it coping into thrash as well so how to stop this ?

    in my macbook pro when composing email it coping into thrash as well so how to stop this ?

    You may have a Bad fan. Make an appointment and take it to the genius bar for an evaluation. It's free, in warranty or out.

  • My Mail app opens unprompted everytime i reboot or awake my macbook pro from sleep.  This was not an issue until i shut down my laptop for the first time in a while 2 days ago.  ANy ideas how to stop this?

    I recently shut down my MacBook Pro for the first time in a long time.  SInce then, everytime i reboot or awake my laptop from sleep, the Mail app opens unprompted causing my computer to slow down incredibly, and some apps to freeze.  I have no idea how to stop this or why it even started doing this.  Any ideas on how to get it to stop? Thanks!

    I have this problem too with my Macbook Air. Mail opens automatically every time my laptop sleeps. I actually just asked about this in my own thread. However, it is not causing my apps to freeze.

  • At the top of my homepage, I'm getting a message "Downloading the latest applications", but the circle to the left keeps spinning, and no applications are downloaded. I don't know how to stop this, tried right and left clicking on the bar. This occurs

    At the top of my homepage, I'm getting a message "Downloading the latest applications", but the circle to the left keeps spinning, and no applications are downloaded. I don't know how to stop this, tried right and left clicking on the bar. This occurs every time I open Firefox. How can I stop or disable this?
    == This happened ==
    Every time Firefox opened
    == Several weeks ago.

    See http://kb.mozillazine.org/Software_Update (Software Update not working properly)
    Remove the files in the ''updates'' and ''updates\0'' folder:
    Vista/Windows7:
    C:\Users\<user>\AppData\Local\Mozilla\Firefox\Mozilla Firefox\ (updates)
    C:\Users\<user>\AppData\Local\VirtualStore\Program Files\Mozilla Firefox\ (updates)
    %LOCALAPPDATA%\Mozilla\Firefox\Mozilla Firefox\updates\

  • My ip5 auto restarting itself lately, how to stop this problem?

    My ip5 auto restarting itself lately, how to stop this problem?

    It cannot just change itself.  If it has not been changed by someone using the phone, then the only other thing I can think of is that the phone is on a corporate Exchange account, and the passcode has been changed by the administrator.  If that is not the answer then the phone will have to be restored.

  • Hi! I've just purchased a new iPhone 5s but whenever I text people with iPhones it's always sent from my iCloud account. This means that my email show instead of my name/number which is really frustrating! Does anyone know how to stop this?

    Hi! I've just purchased an iPhone 5S but whenever I text people with iPhones it sends from my iCloud account. This means that my email comes up for other people not my name/number which is really frustrating! Does anyone know how to stop this?

    Go into Settings>Messages>Send and Receive> Is your phone number checked there? If you do not want your email used, then tap on them and remove the checkmark. If there is no checkmark by your phone number, then turn iMessage off, perform a reset on the phone, hold the sleep/wake and home buttons together until you see the Apple logo and then release. The phone will reboot. Turn iMessage on. When it activates, check your settings again under Send and Receive and make sure the number is checked and the emails are not.

  • Anytime i plug a charger into my iphone . It vibrates , How doI stop this. I've tried several ways

    Anytime i plug a charger into my iphone . It vibrates , How doI stop this. I've tried several ways

    No way to completely stop it.  When you plug in the power cord, it will chime, or it will vibrate (if the mute switch is on), but the device is designed to one of the other.  I suppose it is the designers way of making sure that you know your device is properly connected and has switched over to external power.  At this point in time, that feature cannot be disabled.

  • Pics present in my I phone are defaultly showing in facebook ...how to stop this ??

    Pics present in my I phone are defaultly showing in facebook ...how to stop this ??

    Settings > Messages - Send and Receive at..
    and turn off everything except your Phone #.
    Better yet, get your own AppleID.

Maybe you are looking for

  • How to use the compensate activity in bpel flow

    Hi Can anyone please let me know how to use the compensate activity in bpel flow. Like i have 4 DB adapters in a flow if any one fails i want do the roll back by using compensate activity. I am femiliar with transactions proparties, I want to do it f

  • Is there a way to shut off 3/4G on the IPhone 5

    Is there a way to turn your 3/4g on and off on the IPhone 5.

  • PI 7.1 Ehp1 IDOC adapter message packaging - package options on sender side

    Hi guys, I am trying to use the new IDOC adapter PI7.1 Ehp1 functionality for packaging the IDOCs in single PI message, instead of using Collect pattern in BPM. I have configured IDOC sender comm. channel with Sender Agreement as well. So far, so goo

  • HT201407 restoring from itunes backup

    I believe I restored my phone and now It's on the "Set Up Your iPhone" screen. So when I click on "Restore from iTunes Backup" and connect it to iTunes my pc backs it up or whatever and then after it finishes which only takes about 1-2 minutes my pho

  • SQL query to get the monitor target on a monitor

    Hi! I have a list of some custom created Monitors. I need a list of which computers that are using the monitors, the "Monitor target". Please help me with this. It need to be a SQL Query because my powershell have stopped working.