[fw-wiz] OT: Aircards



I apologize for the OT post, but I wanted to pose the question on this list
because of the quality of response this list's members often give.

OK, so aircards (PPP over cellular) are cool. At a conference in Chicago
this summer I noticed they were "the" laptop accessory to have. Cheap,
go-anywhere Internet access is a dream come true for businesses with a
population of road-warrior employees.

However, I see a huge security management headache for businesses that use
them when their road warriors come home to roost. Specifically, you now
have a good chance that one of your users will simultaneously connect to
your internal network and their aircard carrier. This opens a multitude of
security issues, but the big issue being the possibility that their laptop
is compromised via their aircard and then used as a launch point for an
attack against your internal network. It's not a new problem, but one I
consider more severe than a rogue wireless AP and more likely than someone
actually getting DSL or dial-up access at their desk.

So I'm looking for ideas on how to manage this specific risk. Ideally, each
user's laptop would turn off their aircard connection if it detected an IP
address assigned to another interface. But at this point I'm wide open to
ideas and suggestions. Right now I'd just be happy if I had a reliable
method of detection.

I know some DoD/DoJ consultants are allowed to use aircards. How are other
organizations managing this risk?

Thanks,
PaulM


_______________________________________________
firewall-wizards mailing list
firewall-wizards@xxxxxxxxxxxxxxxxxx
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards



Relevant Pages

  • Re: Windows SBS 2003 and Outlook 2007 via RPC over HTTP
    ... default setting on the aircard was for automatic acceleration. ... As to not getting a laptop to work with Outlook 2007 ... ... a slightly different configuration. ... From the laptop with theaircardI cannot useRemoteWebWorkplaceto ...
    (microsoft.public.windows.server.sbs)
  • Re: Windows SBS 2003 and Outlook 2007 via RPC over HTTP
    ... a slightly different configuration. ... This is again using an at&t air ... From the laptop with the aircard I cannot use Remote Web Workplace to ...
    (microsoft.public.windows.server.sbs)
  • Re: Windows SBS 2003 and Outlook 2007 via RPC over HTTP
    ... As to not getting a laptop to work with Outlook 2007 ... ... same air card, but in wireless mode, it connects no problem, ... even via wireless AP's outside the firewall. ... I'm sure it's an at&t aircard issue, ...
    (microsoft.public.windows.server.sbs)
  • Re: USB Aircard crashing Windows on laptop
    ... 875U Aircard and it works fine on two of my laptops running XP, but on one laptop it crashes Windows with the blue screen of death. ... Web pages that have no Flash work fine, but CNN.com and the dslreports.com speed tests using Flash crash it. ... I reinstalled Adobe's Flash player, but it still crashes with one second of the blue screen and a description of what crashed, but laptop shuts down before I can read it. ...
    (alt.cellular.cingular)