Security Basics mailing list archives

RE: Blocking GoToMyPC


From: "jm" <jm () mindless com>
Date: Thu, 30 Oct 2003 18:01:58 -0000

And the others....

I have not looked at it for a while, but you should be able to find the
info on their site.  It used to say, block connections to
poll.gotomypc.com, but that may have changed...

Policy is your best bet though, no point in relying completely on
technical measures, there is simply not enough hours in the day.  Write
a policy regards remote access/remote control, get it signed off by
appropriate management and make sure it has consequences for breaching
it.

Then educate your users, they should understand why, then they will not
be as keen to go around your policies and controls.

Users should be your first, and last line of defense.

Cheers

JM


-----Original Message-----
From: Brandon Slice [mailto:bslice () backroads net] 
Sent: 29 October 2003 19:01
To: security-basics () securityfocus com
Subject: Blocking GoToMyPC

What is the easiest way to block GoToMyPC?  I do not want employees
either working on their home machines from work, or opening up the
network by bypassing the firewall.  
I think from reading GoToMyPC's website the remote machine must login
into one of the servers, then the client connect to the GoToMyPC server
and the server relays commands to the remote machine.  Also I think I
read that GoToMyPC uses HTTP and other protocols that normally the
firewall allows through.  

One idea that we had was to put a phony DNS entry into our DNS server
for the GoToMyPC domain, to send that traffic to a non-existent IP on
our network.  Would this work?  What would be the major problems with
it?

What about disallowing access to any ip that on a reverse DNS lookup
falls into the GoToMyPC domain?

Thanks for your time,
Brandon 



 
                   

------------------------------------------------------------------------
---
Forum Systems PRESIDIO: PGP / XML GATEWAY APPLIANCE
The Presidio integrates PGP data encryption and XML Web Services
security to 
simplify the management and deployment of PGP and reduce overall PGP
costs 
by up to 80%.
FREE WHITEPAPER & 30 Day Trial - 
http://www.securityfocus.com/sponsor/ForumSystems_security-basics_031027

------------------------------------------------------------------------
----




---------------------------------------------------------------------------
Forum Systems PRESIDIO: PGP / XML GATEWAY APPLIANCE
The Presidio integrates PGP data encryption and XML Web Services security to 
simplify the management and deployment of PGP and reduce overall PGP costs 
by up to 80%.
FREE WHITEPAPER & 30 Day Trial - 
http://www.securityfocus.com/sponsor/ForumSystems_security-basics_031027 
----------------------------------------------------------------------------


Current thread: