Re: TS access and Virus issue

From: Joe (user_at_host.com)
Date: 10/19/04


Date: Tue, 19 Oct 2004 11:27:29 -0400


"Bjarni" <Bjarni@discussions.microsoft.com> wrote in message
news:9BCDE136-8F99-4CD4-B6C2-C9EAE7C93E1B@microsoft.com...
> I have a vendor that wants to have access to an application on my server,
I
> was thinking about using TS, but I have concerns over viruses coming from
the
> vendors network. This is a financial database that the vendor would be
> connecting to and he would not have access to any other areas of the
server.
> Is my concern about viruses valid, or do I have nothing to worry about? I
am
> also worried about overall security on the vendor site, if I give him
access
> to my server and he has security breach then my security is breached
also..
> right?. Hope someone can help me by shedding light on these issues

I don't believe terminal services transfers anything other than screen
shots, the location of your mouse, and what you type on your keyboard. If
you are thinking about the fact that you have to open up your firewall to
the internet for the TS specific ports then you really only have to worry if
you aren't up to date with all the patches. You do have a firewall don't
you?

Joe



Relevant Pages

  • Re: Delayed email from outside vendor or not arriving at all
    ... I understand that one vendor send email to ... your client will get Delivery Status Notification. ... I suggest we track the not receive email in your client SBS 2003. ... How to Enable Message Tracking Center on a Server ...
    (microsoft.public.windows.server.sbs)
  • [UNIX] Multiple Vendor X Server Vulnerabilities (XFree86-Misc, EVI, MIT-SHM, TOG-CUP, XI
    ... Multiple Vendor X Server Vulnerabilities (XFree86-Misc, EVI, MIT-SHM, ... Multiple Vendor X Server XFree86-Misc Extension Invalid Array Index ... Local exploitation of an invalid array index vulnerability in the X.Org X ...
    (Securiteam)
  • [NT] BEA WebLogic Performance Pack Denial of Service
    ... The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com ... If the performance pack is enabled, the BEA WebLogic Server can be crashed ... Vendor response: ...
    (Securiteam)
  • Re: External PCAnywhere to internal client
    ... What you are describing is basic network address translation and should really have nothing at all to do with the server IF the server is ... Assuming that you have a typical hardware firewall, then you should be able to configure port forwarding on it directly to the LAN address of the workstation to be controlled. ... Make sure that you specify the two pcA ports correctly on the firewall, and that these ports are also open on the workstation's software firewall if it has one: ... I use a hardware firewall that lets the correct PCAnywhere ports in from the vendor' s ip address and routed them to the internal PC using the firewall (ie: ...
    (microsoft.public.windows.server.sbs)
  • Re: Unable to connect to or browse a secure web
    ... I cannot browse from my server to the vendor secure site but I can browse ... I checked my firewall logs and I have not found it to be the problem. ... >> https site from the server. ...
    (microsoft.public.inetserver.iis.security)