Security Basics mailing list archives

Re: pcAnywhere...Outbound Only.


From: "Chris Berry" <compjma () hotmail com>
Date: Tue, 28 Jan 2003 13:33:23 -0800

From: "tony toni" <tony572001 () hotmail com>
We have a rule on our firewall that allows all employees to use pcAnywhere to connect to a host OUTSIDE of our network. It is in one direction...that is from inside our network to an outside host and not vise versa. Our firewall administrator, came to me and asks me if I had any security issues with this. He does not want the hassle of maintaining a list of employees that can do this.
I do not see any glaring problems doing this....what do you think?

As long as you are using a VPN this should be ok from a security point of view. If you're not using a VPN, try and get them to set both ends to at least symmetric encryption, preferably PKI, in the PC Anywhere settings. You wouldn't want those login passwords transmitted in the clear would you?

From a management point of view, just realize that people could use this to
violate your company policies by taking control of their home computer and going to denied websites, playing video games, etc.

Other than that, should be fine.

Chris Berry
compjma () hotmail com
Systems Administrator
JM Associates

"For Sys Admins paranoia isn't a mental health problem, its a marketable job skill."

_________________________________________________________________
Tired of spam? Get advanced junk mail protection with MSN 8. http://join.msn.com/?page=features/junkmail


Current thread: