VPN and Internet

G

Guest

i have 25 system connected to internet all the time, the problem when the
users are connecting remote machine using remote desktop connection using vpn
the clients cannot access the internet at the same time.....
plz help me.....
 
L

Leythos

i have 25 system connected to internet all the time, the problem when the
users are connecting remote machine using remote desktop connection using vpn
the clients cannot access the internet at the same time.....
plz help me.....

That's the way it's suppose to be - it protects your network against
people that browse the web and connect to bad things while in a VPN.

If you want them to be able to VPN you need to setup your firewall (at
the VPN endpoint) so that it allows VPN users to access DNS and HTTP
outbound through the VPN's connection at the remote end.
 
Y

Yves Leclerc

This is an easy solution: The VPN client set up has been told to "Use
Default Gateway" on Remote host. If you are not useing the exact same ISP
as the remote host, the default gateway will not let the Internet requests
thru correctly. Just un-check this (in the Advanced setting of the TCP/IP
configuration of the VPN client..)
 
L

Leythos

This is an easy solution: The VPN client set up has been told to "Use
Default Gateway" on Remote host. If you are not useing the exact same ISP
as the remote host, the default gateway will not let the Internet requests
thru correctly. Just un-check this (in the Advanced setting of the TCP/IP
configuration of the VPN client..)

Which allows users to compromise the company/remote network by
installing malware on the computers by browsing the Internet on a less
secure connection that a typical company connection would have.
 
M

Manny Borges

well....maybe. You are assuming no security measures have been implemented
on the VPN client.

But I hear what you are saying.

I am surprised no mentioned the easiest way to ensure that the internet
connections are monitored and secured correctly while on a VPN connection.

A proxy server located at the company would allow for easy configuration and
provide defensive depth and granular controll of internet access..

--
Manny Borges
MCSE NT4-2003 (+ Security)
MCT, Certified Cheese Master

The pen is mightier than the sword, and considerably easier to write with.
-- Marty Feldman
 
L

Leythos

well....maybe. You are assuming no security measures have been implemented
on the VPN client.

But I hear what you are saying.

I am surprised no mentioned the easiest way to ensure that the internet
connections are monitored and secured correctly while on a VPN connection.

A proxy server located at the company would allow for easy configuration and
provide defensive depth and granular controll of internet access..

That's what we implement for all clients - once the user is VPN'd into
their company network that are permitted HTTP/SSL outbound access that
is both filtered and limited to "approved" sites and sites that have
proper content meta type identifiers on the websites.
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top