Re: [fw-wiz] Locking down public wireless access

From: David Lang (
Date: 02/24/05

  • Next message: David Lang: "Re: [fw-wiz] Username password VS hardware token plus PIN"
    To: "Dale W. Carder" <>
    Date: Wed, 23 Feb 2005 21:21:08 -0800 (PST)

    On Tue, 22 Feb 2005, Dale W. Carder wrote:

    > - Roll out a "captive portal" style network admission box. The captive
    > portal also strongly encourages the use of VPN (and allows them to get the
    > client before allowed through) when on the wireless network, but acts as a
    > fallback mechanism for those without: the vpn client, clue, admin on their
    > machines, or who are otherwise guests.
    > There's several free captive portal thingys out there like NoCatAuth,
    > PacketFence, and then the vendors like Perfigo (now vendor C), BlueSocket,
    > and BSi. We found that they all had limitations one way or another, so
    > choose your poison carefully!

    Dale, any chance of getting you to list the limitations that you ran into
    to save the rest of us some research time? :-)

    David Lang

    There are two ways of constructing a software design. One way is to make it so simple that there are obviously no deficiencies. And the other way is to make it so complicated that there are no obvious deficiencies.
      -- C.A.R. Hoare
    firewall-wizards mailing list

  • Next message: David Lang: "Re: [fw-wiz] Username password VS hardware token plus PIN"

    Relevant Pages

    • [NEWS] Cisco VPN 5000 Client Multiple Vulnerabilities
      ... Multiple vulnerabilities exist in the Cisco Virtual Private Network (VPN) ... 5000 Client software. ... These vulnerabilities are documented as Cisco bug ID ... CSCdx17109 - MAC OS VPN 5000 Client password vulnerability ...
    • Re: VPN clients unable to connect to other resources.
      ... gateway matches the IP of the remote client, and DNS and WINS point to the ... remote (although it takes close to a minute to connect, ... This is just regular Windows VPN, ... VPN server, remote routing and access running on the SBS 2003 server ...
    • RE: Slow VPN logon and Spuratic folder visibility
      ... I understand that the remote VPN client ... network configuration. ... the VPN client can access SBS fine? ... Slow VPN logon and Spuratic folder visibility ...
    • RE: VPN timeouts
      ... I do not use ISA & was wondering if there is a configurable option on the ... You remote clients VPN connection will timeout while trying to connect SBS ... between remote client and SBS server which caused by lack of network ...
    • Re: Win2k VPN Client doees work. Winxp Client does?
      ... I have put both the client and the server on the same network as the ... I can not logon to your server and troubleshoot the issue. ... This newsgroup only focuses on SBS technical issues. ... | Subject: Re: Win2k VPN Client doees work. ...