Security Basics mailing list archives
Re: Outgoing IPSEC
From: "Gaddis, Jeremy L." <jeremy () linuxwiz net>
Date: Mon, 21 Nov 2005 20:21:27 -0500
Securi Net wrote:
I have a contractor who works onsite within our network and needs outgoing port 500 opened on our firewall for him to vpn into his company network. Can anyone shed some light on what I shud be concerned about here.
If someone compromises the contractor's machine while he's connected to his company's network, they can then use his machine as a "stepping stone" into your network, since he's probably "inside the firewall" on your network.
HTH, -j -- Jeremy L. Gaddis, GCWN http://www.linuxwiz.net/ "If it's not on fire, it's a software problem."
Current thread:
- Outgoing IPSEC Securi Net (Nov 21)
- Wireless N Stephen Alford (Nov 21)
- Re: Wireless N Paul Cychosz (Nov 22)
- RE: Wireless N Stephen Alford (Nov 22)
- Re: Wireless N Paul Cychosz (Nov 22)
- Re: Outgoing IPSEC Jason Thompson (Nov 22)
- Re: Outgoing IPSEC Securi Net (Nov 22)
- Re: Outgoing IPSEC Jason Thompson (Nov 22)
- Re: Outgoing IPSEC Securi Net (Nov 22)
- Re: Outgoing IPSEC Securi Net (Nov 22)
- Wireless N Stephen Alford (Nov 21)
- Re: Outgoing IPSEC Gaddis, Jeremy L. (Nov 22)