Page 4 of 4

Posted: Wed Jul 13, 2005 6:48 pm
by Giraffe }{unter
Cool Blue wrote:
I have a great solution for that.

Give them a mobile VPN appliance that automatically connects them to the home network from where ever they are via a secure VPN connection. That way all traffic is directed through your head office network, which can be more easily configured to filter standard inappropriate sites.

I do this all the time for my clients. Works great, and it actually simplifies the adminstrators life, by having their corporate policies managed in one place. No more having to dick with single users with unique needs. Just connect them to the office network and force down all the same local policies. Cake and you don't have to change anything on your network. Just setup the end users with the appliances.

PM me if you want to know more, I can link you to the exact appliances i'm referring to. They're cost effective, and easy to use. :icon14:
Sounds great on paper and would be a great way to keep things secure, but we cannot do that.

First VPN is not accessable all the time form all the locations these guys stay at. So they need access to the internet without vpn so they can access email via MS Exchange web client.

Second we're verry lose with our clients, when they fuck up they get a slap on the wrist and thats all. If they do it too many times their supervisor gets informed.

We have various levels of loosness as well.

Production
limited or no net access

Engineers
get a little heat for bad browsing habbits

Sales
Nothing

Posted: Wed Jul 13, 2005 9:10 pm
by Cool Blue
If they can get internet access, they can get a VPN connection.

But hey man, it's your network. :)

But remember, templates are your friend! <3

Posted: Wed Jul 13, 2005 9:19 pm
by Giraffe }{unter
Cool Blue wrote:If they can get internet access, they can get a VPN connection.

But hey man, it's your network. :)

But remember, templates are your friend! <3
Most hotels that have limited VPN access and some routers like say your standard every day linksys can only support one VPN tunnel at a time, thus making things very difficult.

I would love to set-up a locked down network with site blocking, file type blocking etc... but that's just not going to happen here. I do however have a very good detection system in place that scans a users registry on login, for any prohibited software. This keeps us on top of things :icon14: once they have been fucked :icon33:

Posted: Wed Jul 13, 2005 11:59 pm
by mik0rs
Giraffe }{unter wrote: We have various levels of loosness as well.

Sales
Nothing
From what I've heard and from that, I'm guess the primadonnas are the sales guys?

Posted: Thu Jul 14, 2005 12:09 am
by Giraffe }{unter
mik0rs wrote:
Giraffe }{unter wrote: We have various levels of loosness as well.

Sales
Nothing
From what I've heard and from that, I'm guess the primadonnas are the sales guys?
Werd...