ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

SME Toolkit in association with http://ad.doubleclick.net/clk;205413468;14699245;m?http://adfarm.mediaplex.com/ad/ck/2397-58840-22058-14

Remote users are the weakest VPN link

John McCormick

Published: 23 Jul 2002 13:13 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Virtual private networks have generated their share of security concerns, but the focus has been primarily on flaws in VPN protocols and configurations.

The fact that many telecommuters and road warriors also use their systems for things other than work and then connect to the corporate network via VPN makes poor security practices on those remote PCs a legitimate concern for the corporate network.

How big a deal is this? Cahners In-Stat research shows there were 32 million full-time or part-time telecommuters in 2001, with 70 percent having access to the Internet. A large percentage of these workers were employed by small businesses, but a significant number, roughly 5 million, were working for enterprise-class companies and probably using VPN connections.

This large number of off-site systems that connect to corporate networks raises two major categories of security concerns.

Broadband Obviously, the first concern is that many telecommuters use broadband connections such as DSL and cable to get enough bandwidth to do their jobs. This makes them targets for attack, and once an attacker has penetrated the home system, that person may be able to piggyback into the corporate network through the VPN.

Data security The other major concern is data security. Telecommuters and road warriors often store a lot of company data on their machines. Although locating and penetrating a remote user's system takes a certain amount of skill, it's fairly easy to steal the computer carrying case of a road warrior or break into a telecommuter's house and snag a computer that may contain large amounts of confidential business data.

How it starts Most companies fall into telecommuting a bit at a time, beginning with one or more key workers who request the convenience of working from home at least occasionally. Sometimes an arrangement begins because a valued employee has a medical problem, is recovering from an operation, or is extending a maternity leave.

Regardless of the circumstances, telecommuting almost always begins as a case-by-case process where the users are given individual treatment. This means that, in most instances, a variety of hardware and software is in use, and telecommuters are performing a wide range of tasks--creating a nightmare for the IT professionals who have to manage the computing environment.

In addition, since the usual corporate network policies probably can't be directly applied to remote workers, no formal security or usage policy is likely to be in place. And you can't simply apply the office policy to remote workers. Many of the corporate policies just don't make sense for remote workers, and some additional considerations need to be made for them as well. Sometimes, eliminating bad rules is more important than adding good ones. It's only human nature, but if you try to impose bad rules that are unworkable, workers will tend to ignore the good rules too.

Next

Previous

1 2 3 4


  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Kyocera

Did you find this article useful?
180 out of 366 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:











Vista Upgrade Blog

XP survival, from one horses mouth, an...

Hi everyone....for those that need more information on XP survival, I have pasted this open letter from Bill Veghte, senior vice president of microsoft, found on microsoft .com. Hope... More

2 comments

A $40 CONSUMER-class router has create...

Believe it or not I don't work in IT, haven't for 7 years. Yes I work with Microsoft's Windows XP Embedded and as a result I have to know a lot about the OS, the kernal, Win API calls... More

Post a comment

Sick Puppy Redo

I generally follow a dispassionate investigative process when trying to discern what happened when a project goes bad. Although its a low priority item, it gets done simply because... More

Post a comment

Discussions

1000030281 1000030281

Facebook Bans Firefox 3

Sunday 20 July 2008, 2:33 AM

1 comment
roger andre roger andre

SP3 Under Suspicion Again

Saturday 19 July 2008, 9:29 PM

2 comments