3com DUA1550-0AAA02 Manuel D’Utilisation

Page de 136
Case Study 5 - Removing Infected Devices From The Network
85
When a PC needs to be isolated for the first time:
Enter the MAC address for the computer that needs to be removed from 
the network. For information on entering MAC addresses, see “Entering 
MAC Addresses For A Computer”i
Chapter 3.
Associate the Isolation rule with the computer, see “Associating Rules 
Network Operator
Tasks
The network operator cannot enter the MAC address for a computer. 
However, once the computer’s MAC address has been entered, the 
operator can apply the Isolation rule to the computer if they have been 
given write permission for the rule. The operator can also reconnect the 
computer to the main network once the network administrator has 
removed any viruses or worms.
On being informed that a specific PC needs to be isolated again, use the 
Active Directory Users and Computers interface to perform the following:
Click on Computers in the Tree pane, 
Highlight the specific PC, and right-click. Select Properties.
Select the Network Access tab from the Properties dialog window.
A list of rules that the operator has permission to apply will be displayed.
Tick the Isolation rule to apply it to the PC.
Click OK and exit the Active Directory Users and Computers interface.
On being informed that a specific PC can be returned to the normal 
network, use the Active Directory Users and Computers interface to 
perform the following:
Click on Computers in the Tree pane, 
Highlight the specific PC, and right-click. Select Properties.
Select the Network Access tab from the Properties dialog window.
A list of rules that the operator has permission to apply will be displayed
Untick the Isolation rule applied to the PC.
Click OK and exit the Active Directory Users and Computers interface.