Five ways to protect IP addresses

Source: Internet
Author: User

  First, deactivate the network connection service method

As you know, if users are limited to modifying TCP/IP parameters, they will not be able to use the new IP address even if they modify the IP address, thus losing the meaning of IP theft. The most straightforward way to limit the user's access to TCP/IP parameters is to allow the user to open the TCP/IP parameter Settings window. To do this, you can disable the system "networkconnections" service method, the TCP/IP parameter Settings window hidden, so that users can not enter the Settings window, using the new IP address.

First click Run on the Start menu, in the Open System Run dialog box, enter the "services.msc" command, click the "OK" button, open the system's Service list interface, select the "networkconnections" service Item, and click on the right mouse button;

From the shortcut menu that pops up, click Properties, open the Service Properties settings interface, click the Deactivate button in the interface, select startup type as disabled, and click OK.

At this point you can click "Start", "Settings, network and dial-up Connections command, you cannot find the Internet connection or local Area Connection icon in the next window, and you will naturally not be able to enter the TCP/IP parameter Settings window to modify the IP address and other parameters. This enables you to restrict the illegal change of IP addresses.

Of course, the use of the "Disable Network connection service" to protect the IP address, to the normal access to the internet has caused trouble, after all, the network connection service has been banned, then any network-related access will be terminated. If you want to protect the IP address at the same time, do not affect the normal operation of the Internet, then you might as well try to follow the same steps, the system's "PlugAndPlay" service deactivated, so that the TCP/IP parameter Settings window can be hidden, but does not affect the normal network access.

  Ii. restrictions on the modification of network parameters method

If the normal user's administrative rights are directly restricted, so that they do not have the right to open the TCP/IP parameter Settings window, then ordinary users can not modify the IP address at will. For Windows98, to limit the user's ability to modify network parameters, you can only modify the relevant network key values in the registry to achieve the goal.

Click the start Run command, and then, in the Run dialog box that appears, enter the regedit command, and then click OK to open the System's Registry editing window and position the mouse over HKEY_USERS. On the Defaultsoftwaremicrosoftwindowscurrentversionpoliciesnetwork branch.

And then in the right area of the interface, click the Edit, New, DWORD Value option in the menu bar, and then name the new DWORD value "Nonetsetup," and then enter the value as "1", and then restart the computer; Now you try right click on the Network Neighborhood icon, and execute the "Properties" command on the shortcut menu and discover that you are not able to access the Network Properties Settings window, so the purpose of restricting the modification of the IP address is achieved. However, this method is only valid for the WINDOWS98 operating system.

  Restriction Access Network Property method

This approach is the same as the previous one, and the method is specifically designed to Windows2000 the above version of the operating system. The following is the specific procedure for implementing this method.

First open the System run box and enter the "gpedit.msc" string command, and then click the OK button to open the system's Group Policy editing window. Then, in the Edit window, double-click the User Configuration Administrative Templates network Network and dial-up Connections icon. In the pop-up screen shown in Figure 3, select the "Prohibit access to properties of LAN connection components" option on the right and double-click it; in the settings box that appears, select the Enabled option. and click the OK button; When you go into the Network Connection properties interface and select the Internet Protocol (TCP/IP) project, you will see that the corresponding "Properties" button is grayed out so that normal users cannot open the TCP/IP parameter Setup window. Thus arbitrarily modify the IP address.

  Four, hide the local connection icon method

In general, when you modify a computer's IP address, you need to find the local connection icon for the system, right-click the icon, and then execute the Properties command from the pop-up right menu to enter the TCP/IP parameter Setup window. If you think of a way to hide the local connection icon, then the average user will also not be able to open the TCP/IP parameter Settings window to arbitrarily modify the IP address. To hide the local connection icon for the system, you can follow these steps to implement it.

Because the local connection icon is related to the system's Netcfgx.dll, Netshell.dll, Netman.dll three dynamic link files, once the three dynamic link files are unregistered, the local Area Connection icon is automatically hidden. When you register the above three dynamic link files, you can open the System run box and enter the string command "regsvr32netcfgx.dll/u" (where you want to keep a space between the regsvr32 command, the dynamic link file), and click OK. will be able to Netcfgx.dll files to the registration;

The same way to reverse the registration of the other two files; After you restart the computer system, and then try to open the Network and Dial-up Connection window, the local connection icon really disappears from sight.

V. Hidden Network Neighborhood Law

If you hide the Network Neighborhood icon, you will not be able to enter the TCP/IP parameter Settings window, so the IP address of the local computer can not be arbitrarily modified. Although there are a number of ways to hide your network Neighborhood, this article presents a method that is rarely used--system policy, which can be used in Windows98 and Windows2000 systems:

Click the start Run command, and then, in the Run dialog box that appears, enter the Poledit string command, click OK, and then open the System Policy editing interface and click Open Registry in the File menu item of the interface.

In the interface that pops up, double-click the local user icon, expand the local user, Shell interface, restrict branch, and then select the Hide Network Places in the Figure 4 interface, and click OK to return;

Below, in the System policy editing interface, click the Save button in the toolbar, and then restart the computer system so that the Network Neighborhood icon on the desktop is gone.

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.