Security Basics mailing list archives

Re: How can I deny VPN access based on Virus DAT


From: Mario Platt <mplatt () gmail com>
Date: Thu, 5 Jan 2006 14:57:15 +0000

 You have several vendors doing this now. For example, Cisco's NAC (Network
 Admission Control) with TrendMicro does that. Interspect from Checkpoint
 with several AV vendors, and I think there are some more.

  Mário Platt


On 1/4/06, Michael Wright <mike.wright () gmail com> wrote:
The only one that I am familiar with is Microsoft's ISA Server 2004. You
can implement the VPN Quarantine feature pretty easily - you create WMI / VB
scripts to ensure that certain prerequisites (such as file version / date
modified, etc.) are met before the Quarantine is lifted.

Mike

-----Original Message-----
From: Nick Duda [mailto:nduda () VistaPrint com]
Sent: Tuesday, January 03, 2006 9:27 AM
To: security-basics () securityfocus com
Subject: How can I deny VPN access based on Virus DAT


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Can anyone explain the different products and/or procedures in using a VPN
device for telecommuters with the ability to deny VPN access if they don’t
have Antivirus or their Antivirus DAT's are not up to date.

I'm using the Nortel Contivity, which I think has seen its time. We are
considering VPN access for telecommuters via Cisco PIX.

Nick



-----BEGIN PGP SIGNATURE-----
Version: PGP Desktop 9.0.2 (Build 2424)


iQA/AwUBQ7qXrVPWeke/vskjEQJh6gCgs8VUSFxC0qLQmfQE7Uxrk+Bw1y4AoKkf
la+W6RycnNnKpCtPuVEN1K0I
=PjBu
-----END PGP SIGNATURE-----

Confidentiality note:
The information in this email and any attachment may contain confidential
and proprietary information of VistaPrint and/or its affiliates and may be
privileged or otherwise protected from disclosure. If you are not the
intended recipient, you are hereby notified that any review, reliance or
distribution by others or forwarding without express permission is strictly
prohibited and may cause liability. In case you have received this message
due to an error in transmission, please notify the sender immediately and to
delete this email and any attachment from your system.



---------------------------------------------------------------------------
EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE
The Norwich University program offers unparalleled Infosec management
education and the case study affords you unmatched consulting experience.
Tailor your education to your own professional goals with degree
customizations including Emergency Management, Business Continuity
Planning,
Computer Emergency Response Teams, and Digital Investigations.

http://www.msia.norwich.edu/secfocus

----------------------------------------------------------------------------





Current thread: