Security Basics mailing list archives

Re: Outgoing IPSEC


From: "Gaddis, Jeremy L." <jeremy () linuxwiz net>
Date: Mon, 21 Nov 2005 20:21:27 -0500

Securi Net wrote:
I have a contractor who works onsite within our
network and needs outgoing port 500 opened  on our
firewall for him to vpn into his company network.

Can anyone shed some light on what I shud be concerned
about here.

If someone compromises the contractor's machine while he's connected to his company's network, they can then use his machine as a "stepping stone" into your network, since he's probably "inside the firewall" on your network.

HTH,
-j

--
Jeremy L. Gaddis, GCWN
http://www.linuxwiz.net/

"If it's not on fire, it's a software problem."


Current thread: