RE: pcAnywhere...Outbound Only.

From: Peter Snell (PSnell@daymon.com)
Date: 01/28/03

  • Next message: Moeckel, Sharon: "RE: Need recommendations about IDS Systems"
    From: Peter Snell <PSnell@daymon.com>
    To: tony toni <tony572001@hotmail.com>, security-basics@securityfocus.com
    Date: Tue, 28 Jan 2003 13:15:25 -0500
    
    

    If you installed pcAnywhere with the Remote options only, there would be no
    Hosts to connect to on your network. That would give you some added
    security as well.

    Pete

    -----Original Message-----
    From: tony toni [mailto:tony572001@hotmail.com]
    Sent: Monday, January 27, 2003 8:44 PM
    To: security-basics@securityfocus.com
    Subject: pcAnywhere...Outbound Only.

    Hi,

    We have a rule on our firewall that allows all employees to use pcAnywhere
    to connect to a host OUTSIDE of our network. It is in one direction...that

    is from inside our network to an outside host and not vise versa. Our
    firewall administrator, came to me and asks me if I had any security issues
    with this. He does not want the hassle of maintaining a list of employees
    that can do this.

    I do not see any glaring problems doing this....what do you think?

    Tony Graves
    Security Services
    Walton International Transportation Corp.
    Seattle, Wa.

    _________________________________________________________________
    The new MSN 8: advanced junk mail protection and 2 months FREE*
    http://join.msn.com/?page=features/junkmail



    Relevant Pages

    • RE: IDS and Spywares
      ... > to get data through the network. ... a credit card number being transmitted by some malware to the ... hIDS/hIPS have more information at the host side. ... >> better than any network based security control. ...
      (Focus-IDS)
    • RE: Host Based IDS Recommendations?
      ... Subject: Host Based IDS Recommendations? ... Precisely Define and Implement Network Security & Performance ...
      (Focus-IDS)
    • RE: Using ARP to map a network
      ... destination IP hosts are on the same L2, and by definition, L3 network. ... host ARP table on NET X should only show entries for those machines on its ... same subnet the host had conversations with. ... Cisco's recommendation (from a security point of view) is to disable proxy ...
      (Pen-Test)
    • Re: NADS ( was RE: IPS comparison)
      ... > few things about my NADS: ... > that can give you adequate network visibility or proper blocking ... This completly rules out host-based IPS or any other endpoint security ... > the one RPC buffer overflow that correlated to a host that went outside ...
      (Focus-IDS)
    • SecurityFocus Microsoft Newsletter #50
      ... Subject: SecurityFocus Microsoft Newsletter #50 ... Specialist in Microsoft's Security Services Partner Program, ... Network Monitoring for Intrusion Detection ... Relevant URL: ...
      (Focus-Microsoft)