Re: AOL Instant messenger

From: i gotz da mulligenz (mulliga@ns.OhYeah!)
Date: 03/02/03


From: i gotz da mulligenz <mulliga@ns.OhYeah!>

On Wed, 26 Feb 2003 22:42:22 -0700, "NeoSadist" <neos@dist> blurted:

>
>"Brad Denham" <bdenham@mapsaztrib.com> wrote in message
>news:260220031111578916%bdenham@mapsaztrib.com...
>> There is a group within my organization that utilizes AIM quite
>> extensively. This group uses it to communicate among themselves (they
>> are on their own IP subnet), and they also use it to communicate with
>> some of our business partners.
>> I completely understand the inherent security risks of using this
>> software for communication. I am trying to work with this group to find
>> another way to perform this type of communication using more secure
>> means, (email and corporate based Instant Messaging products) but I am
>> running into roadblocks with them.
>
>Microsoft Netmeeting (using passwords)
>
>> If for some reason I need to let them and only them continue to use
>> this method of communication, what is the best way that I can lock it
>> down as to protect the rest of my enterprise?
>
>Only allow certain computers to have access to certain ports. Either that
>or make them use either an msn chat or something. Beyond that, I'd say lock
>them down to netmeeting only, and if they complain, ignore tham.
>
>> One method I have thought of is to only allow that subnet access to
>> the oscar server to login, and block all other subnets.
>> I would appreciate any and all suggestions.

If NetMeeting is used, DO NOT ENABLE REMOTE DESKTOP SHARING!!! I've seen a
WinBlowz box sitting behind a hardware AND ZoneAlarm Pro software firewall (Go
figger) have its hard drive COMPLETELY wiped out because of an unpublished hack
using NetMeeting's Remote Desktop Sharing.

--
"<the spurs are the best team ever>" -Louise no_balls@my-deja.com, 2/2/3


Relevant Pages

  • FW: ipfw, natd and routing question
    ... connected to our DMZ subnet, ... I use NAT to 'route' traffic from the LAN to the Internet ... I use ipfw rules to ROUTE traffic from the Internet to the DMZ subnet ... The information contained in this communication is confidential and is ...
    (FreeBSD-Security)
  • AOL Instant messenger
    ... There is a group within my organization that utilizes AIM quite ... another way to perform this type of communication using more secure ... (email and corporate based Instant Messaging products) but I am ... One method I have thought of is to only allow that subnet access to ...
    (comp.security.firewalls)
  • Re: AOL Instant messenger
    ... >> another way to perform this type of communication using more secure ... >them down to netmeeting only, and if they complain, ignore tham. ... >> One method I have thought of is to only allow that subnet access to ... using NetMeeting's Remote Desktop Sharing. ...
    (comp.security.firewalls)
  • Router using netbios over different subnets
    ... between these networks through which I have allowed communication by 10 ... users on the 192.168.1.0 subnet. ... forests with no trust arrangement. ...
    (microsoft.public.windows.server.networking)
  • NetMeeting vs. MSN Messenger
    ... NetMeeting? ... they accomplish the same goal: internet ... communication using audio/video? ...
    (microsoft.public.internet.netmeeting)