Re: Can encryrpted packets be cracked by middle man?

From: Ian (gruntyonline_at_hotmail.com)
Date: 10/07/05


Date: Fri, 07 Oct 2005 13:55:45 +0100

Bob I wrote:
> True, the "upfront" costs may be higher, but you DO have control of
> what's in the "box" hardware and software wise. Also the possibility
> exists of using laptops and docking stations, so one unit can be used at
> work and home.
>
> Alan wrote:
>
>> "Bob I" <birelan@yahoo.com> wrote in message
>> news:uYdDmnnyFHA.1960@TK2MSFTNGP10.phx.gbl
>>
>>> Provide said staff with a locked down and protected company PC for
>>> business use at home.
>>>
>>
>>
>> Hi Bob,
>>
>> Neat idea, but I suspect it is not very practical in terms of cost and
>> staff aren't going to want another PC at home (I wouldn't - my wife
>> would kill me!)
>>
>> I should have been more precise in terms of what to do within the
>> prameters of existing hardward setup.
>>
>> Thanks,
>>
>> Alan.
>>
>>
>
Assuming we are talking about a VPN Solution here - If the VPN is setup
correctly - to use the default gateway on the vpn - Surely this simple
step goes a long way to prevent the PC being comprimised during a VPN
session?

This also helps with the "vpn clients who can do things on your network
just becuase they are dialled in"

I see this quite a lot where organisations restrict users from doing
anything across a firewall besides HTTP and HTTPS - however if the user
goes home and creates a vpn connection in they can do whatever they like.

Might be trivial points but thought it was worth chipping in!

Ian



Relevant Pages

  • Re: Obvious Operator Error: Help
    ... Bob Lin, MS-MVP, MCSE & CNE ... Networking, Internet, Routing, VPN, Anti-Virus, Tips & Troubleshooting on ... >transfer all my docs and settings for my IE. ...
    (microsoft.public.windowsxp.network_web)
  • Re: error 800: unable to establish VPN connection
    ... Bob Lin, MS-MVP, MCSE & CNE ... Networking, Internet, Routing, VPN Troubleshooting on http://www.ChicagoTech.net ... > Janet wrote: ...
    (microsoft.public.windowsxp.work_remotely)
  • Re: VPN using XP Home
    ... "Bob S." ... > Can two computers with XP Home use Microsoft VPN or do we really need a ... > VPN ... > I was looking for some backup software that could navigate through this ...
    (microsoft.public.windowsxp.basics)
  • RE: Possible to access Project Server 2003 by RWW?
    ... The only way I've been able to do this by VPN. ... Shane ... "Bob" wrote: ... > far my searches have turned up nada. ...
    (microsoft.public.windows.server.sbs)
  • Re: Notification via webservices; transport files via sftp?
    ... I figured, yes https is encrypted, but that using such on a vpn ... would be even more secure. ... >> I figured ftp would be a more efficient protocol for sending files, ... For downloading specific files HTTP is better. ...
    (microsoft.public.dotnet.distributed_apps)