Security Basics mailing list archives

Re: How safe is a VPN connexion from within an internal network?


From: krymson () gmail com
Date: 21 Nov 2006 14:28:31 -0000

A VPN connection from a client into another network is pretty typical and a rather secure way to do it. When the client 
connects out of your network through your firewall and into the remote network, your NAT firewall shouldn't really care 
as this will be an established outgoing session. Depending on how the remote network is set up, yes, most likely the 
other network can see your computer running the VPN client. There's not much you can do about that, that's just the 
nature of it.

I think the most important thing would be to make sure the workstation is properly hardened. Patch it up, don't run 
lots of weird services on it. You don't want to be infected by something on the remote network, nor would you want to 
unleash something on them through that system.

A site-to-site VPN is far more insecure. Again, depending on how fancy people get with networking, a site-to-site VPN 
typically means you see systems on the target network and they see systems on your network, as if you're all on the 
same network.

---------------------------------------------------------------------------
This list is sponsored by: Norwich University

EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE
The NSA has designated Norwich University a center of Academic Excellence 
in Information Security. Our program offers unparalleled Infosec management 
education and the case study affords you unmatched consulting experience. 
Using interactive e-Learning technology, you can earn this esteemed degree, 
without disrupting your career or home life.

http://www.msia.norwich.edu/secfocus
---------------------------------------------------------------------------


Current thread: