LAN isolation



Forgive me if this is the wrong place to post this, or if what I am
asking seems naive!

We have a situation where we have a customer who wants to use the
software available at www.logmein.com

They have a firewall which allows traffic in on port 443 (SSL port
logmein uses) - We cannot get access to this firewall, but as an extra
security measure can we isolate the PC that is being used for remote
access by using another firewall?

I am not a firewall expert, but the remote access PC only needs to run
one piece of software, which requires 2 ports to run (not sure which
ones, but the will not be standard ports). Can we put another firewall
in front of this machine and open port 443 (to let the logmein
software interact), and then only allow the PC to communicate with the
rest of the network with the 2 other ports? (The software will work
without logging onto the company network)

Is this possible? The logmein software seems secure, but say the
remote user PC was compromised and all the logmein passwords were
stolen, we would like to lock down the access PC so that anyone
logging into it does not get full access to the LAN (We definitely
have no access to there current router/firewall).

Any advice would be greatly appreciated.

Andy

.



Relevant Pages

  • Re: Alternative to GoToMyPC?
    ... > Remote Desktop would be your ... > Is there any way to tell what port GoToMyPC was using? ... Shenan Stanley wrote: ... > address and to create a path through the firewall to the pc... ...
    (microsoft.public.windowsxp.work_remotely)
  • Re: SP2 firewall/remote management
    ... Right, and when that setting is applied, running>netsh firewall show port ... > I would think you need to apply this policy setting on the remote ... > Windows Firewall: Allow remote administration exception ...
    (microsoft.public.windowsxp.setup_deployment)
  • Re: Need VPN Firewall security advice
    ... > I am about to put a port forward in my IPTABLES ... > firewall to allow a remote Windows laptop to ... > run a VNC on a desktop inside my firewall. ... > The port forward checks to remote end's IP address, ...
    (comp.os.linux.security)
  • Re: Still behind a firewall (home edition sp2)
    ... You might look at either UltraVNC (you need TCP Port 5900 open on the ... firewall) with its encryption plug-in and XP driver for the host PC... ... Al Jarvi (MS-MVP Windows Networking) ... I am trying to install a remote desktop server (home ...
    (microsoft.public.windowsxp.network_web)
  • Re: 1 NIC v. 2 NICS & remote access questions from beginner
    ... you could use Remote Web Workplace for direct, remote control access of desktops, or you could use a VPN for general network connectivity followed by mapped drives to the file shares. ... You can use the free Microsoft VPN by configuring RRAS on the server and opening TCP port 1723 on the firewall, or you could use a firewall-provisioned client. ...
    (microsoft.public.windows.server.sbs)