Re: RDP, RWW and VPN difference



I am yet to experience a single VPN tunnel which doesn't open all ports
whether set up by an SBS or a Corporate admin, unless it's Leythos or I of
course. Admittedly, I don't spend a lot of time looking at corporate
networks.

"Susan Bradley, CPA aka Ebitz - SBS Rocks [MVP]" <sbradcpa@xxxxxxxxxxx>
wrote in message news:%233Wqe8BwGHA.4576@xxxxxxxxxxxxxxxxxxxxxxx
I've yet to see a SBS consultant take the time to implement VPN in your
manner other than you.

RWW gives you the same set of security (especially when Dana does his
RWW-guard product and in fact more so since it will be a one-time
password)

Leythos wrote:
In article <uNFTVHAwGHA.4880@xxxxxxxxxxxxxxxxxxxx>,
charlie@xxxxxxxxxxxxxxxxxxxxxxx says...

Of the three, RWW is the safest and the most flexible. VPN opens up your
network to whatever malware happens to have found its way onto the
remote client. RDP alone limits your options to a single PC.


Wrong, VPN does not have to open your network, it only does so if you
improperly implement VPN.

Our users VPN into the firewall with one user/password that they don't
control, it's NOT the same user/password they log onto Windows with.

The firewall has a rule, per FW authentication group that limits each
group of users to TCP3389 and either the IP of the terminal server or the
specific workstation they have been assigned in the company.

We have all the RD/TS sessions locked down.

So, with this in mind, there is nothing that can get through the VPN that
could not get into the RWW session. This method, VPN is more secure as it
requires TWO levels of authentication instead of just one.




.



Relevant Pages

  • Re: How secure is my VPN?
    ... Leythos> A better method is to purchase a firewall that also works ... Leythos> to the VPN and another user/pwd to connect to the domain ... vulnerable to weak user passwords. ...
    (microsoft.public.windows.server.sbs)
  • Re: How secure is my VPN?
    ... Leythos> A better method is to purchase a firewall that also works ... Leythos> to the VPN and another user/pwd to connect to the domain ... vulnerable to weak user passwords. ...
    (microsoft.public.windows.server.sbs)
  • Re: RDP, RWW and VPN difference
    ... whether set up by an SBS or a Corporate admin, unless it's Leythos or I of course. ... Wrong, VPN does not have to open your network, it only does so if you improperly implement VPN. ...
    (microsoft.public.windows.server.sbs)
  • Re: Remote desktop over vpn
    ... Leythos wrote: ... >>have a virtual IP and policies to allow the traffic. ... >>on both ends of the VPN. ... > firewall setup to restrict at the port/service level. ...
    (comp.security.firewalls)