> Should we be concerned enough about someone hacking into the workstations
> and then tapping into our servers to put software based firewalls at each
> workstation.

Heya Jason. In addition to the network worm threat, here's a couple
more things to consider:

Traditionally, it's not that hard for a locally-logged on user with
direct physical access to the hardware to increase his local
credentials to that of local administrator -- especially if nobody's
watching him closely as he's sitting at the terminal.

Once he's at a 0wned machine, the attacker is free to target other
machines at will.

Also, I would expect that a university setting would engender a more
aggressive local attacker than you would typically encounter in an
otherwise similar corporate environment, which would further justify
stronger host-based defenses.

