Firewall Wizards mailing list archives
Blackberry MDS Connection Bypassing firewall
From: "miedaner" <miedaner () twcny rr com>
Date: Fri, 11 Jan 2008 10:46:42 -0500
Hi, Wondering if anyone has dealt with this problem with BES. Blackberry enterprise server is configured by default to allow TCP traffic from the Blackberry clients through the encrypted BES connection to a internal network. As the Blackberries are java based some clever folks have built things like SSH clients for them. The problem is that this type of access bypasses firewall and VPN rules. I know that there are ACL's possible on the MDS connection service that allows this but I am told that it is either block all tcp or block none. I am wondering if anyone knows if the BES ACl really is all or none and if anyone has implemented a solution to restrict internal network access through BES to only protocols like http or hhtps. TIA
_______________________________________________ firewall-wizards mailing list firewall-wizards () listserv icsalabs com https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards
Current thread:
- Blackberry MDS Connection Bypassing firewall miedaner (Jan 11)
- Re: Blackberry MDS Connection Bypassing firewall Erik LaBianca (Jan 17)
- Re: Blackberry MDS Connection Bypassing firewall Chris Myers (Jan 18)
- Re: Blackberry MDS Connection Bypassing firewall Miedaner (Jan 19)
- Re: Blackberry MDS Connection Bypassing firewall Chris Myers (Jan 18)
- Re: Blackberry MDS Connection Bypassing firewall Erik LaBianca (Jan 17)