TechCGD
asked on
Logmein
Hi
I am evaluating Logmein as a remote access solution for my corporate environment at the moment. A network consultant (trying to sell me another product) said that I should stay well away from it as its unsecured "Man in the middle". Security is very important to us.
I have read the white paper and it looks secure, going to use it with RSA dual factor authentication, and I have searched the Internet and cant find anything negative.
I like the solution because of what it offers but I dont want to look an idiot in front of my boss if I recommend something that is a security risk.
Can someone here give me an unbiased opinion? How secure is it?
Thanks
I am evaluating Logmein as a remote access solution for my corporate environment at the moment. A network consultant (trying to sell me another product) said that I should stay well away from it as its unsecured "Man in the middle". Security is very important to us.
I have read the white paper and it looks secure, going to use it with RSA dual factor authentication, and I have searched the Internet and cant find anything negative.
I like the solution because of what it offers but I dont want to look an idiot in front of my boss if I recommend something that is a security risk.
Can someone here give me an unbiased opinion? How secure is it?
Thanks
Your best bet in terms of using a free remote app is to use CrossLoop. Easy to setup, plus it confirms the man in the middle and other security worries are not an issue as it requires for the initial connection a code must be supplied by the other side for a successful connection. Its a great product, and since I had used logmein previously, in my opinion it was superior to logmein.
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
If you use a Cisco pix firewall for your enviroment, the way around all the security issues is to use the Cisco VPN option and that will secure the connection, etc...
In my experiences with the product, it is very secure. The protection offered from preventing malicious access to your LogMeIn account is excellent and I could not see an intruder infiltrating their system easily.
However, the problem comes in terms of whether LogMeIn themselves can be trusted. In a properly configured environment, I would not use LogMeIn since it means deploying something beyond your control. Instead, a local TS Gateway server, with an encrypted SSL session between that and the client workstation is my preferred approach, for offering much better security.
-Matt