Domain Security

Is there reasons to be concern of a visitor at your facility accessing the internet for vpn connection to his/hers corporate office?  

Who is Participating?
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

BrianIT ManagerCommented:
I'm never a big fan of allowing encrypted traffic to leave my network.  The reason being is that my firewall can't inspect the packets.  It is really up to you and how comfortable you are with it.  My company doens't allow it but there are plenty that do.



ususally encrypted conections are "black holes" to your
defense systems.
any traffic can get in and out without your ability to control.

since a visitor can have  viruses , trojans or any other
goodies you dont have any control off allowing connection is usually cause for problems .

I suggest  as we do , to connect all meeting rooms wire and wireless access to the firewall DMZ . with rules allowing only internet access with no connection to the company lan .


Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
tcaterAuthor Commented:
Thanks Zomet

Your thought on using DMZ may be something I need to look into.  I would want to connect all wired and wireless access to that port.  However, designating a DMZ port for guest VPN traffic turn on the light bulb...:-)

tcaterAuthor Commented:

I would not want to connect all wired and wireless access to that DMZ port.
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
Windows Networking

From novice to tech pro — start learning today.