Re: VPN and Symantec Firewall

From: Karl R. Grose <karlgrose_at_berkeley.edu>
Date: Wed Apr 20 2005 - 14:25:47 PDT

Hi Ivan,

On Wednesday 20 April 2005 12:58, Ivan Ordonez wrote:

> We have a user who wants to work from HOME and be able to access her
> OFFICE computer. I suggest using Remote Desktop Connection that comes by
> default on Windows XP Professional computer. I am aware that you can
> easily access your desktop computer from anywhere using Windows XP Remote
> Desktop Connection but securing it is another issue. The user is

Also, FYI, the default RDP 5.1 for WinXP uses encryption for the session, so
you have some level of security for a Remote Desktop connection without
further measures.

> running Windows XP Professional, SP1 with Symantec Client Firewall.
>
> I would like her to install VPN client on her HOME computer and login to
> Berkeley VPN before she connects to her OFFICE computer. Is there anyway
> you can configure Symantec Client Firewall to allow ONLY connection
> initiated by Berkeley VPN or connection coming from Berkeley VPN?

Yes, but be sure also to allow other needed connections in your custom
policy for things like DNS, NTP, IMAP, SMTP, etc. if you want to do
anything network-related once connected. See the SCS Admin Guide or the SCS
Firewall Admin tool for the details.

--Karl

------------------------------------------------------------------------
The following was automatically added to this message by the list server:

For information about Micronet, including subscribing to
or unsubscribing from its mailing list and finding out
about upcoming meetings, please visit the Micronet Web site:
<http://micronet.berkeley.edu/>.
Received on Wed Apr 20 14:31:00 2005

This archive was generated by hypermail 2.1.8 : Wed Apr 20 2005 - 14:31:00 PDT