cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
304
Views
5
Helpful
1
Replies

Internet Access and Corporate Remote Access VPN

tech_trac
Level 1
Level 1

Hello,

From security perspective, is it safe to allow internet access via Split Tunneling while the users are accessing the corporate network through Remote Access VPN ?

1 Reply 1

JORGE RODRIGUEZ
Level 10
Level 10

Simple answer it poses high securitty risks to corporate network.

will give you an example...

Say User X who works in finance dept Remote access VPN from his home into his work corporate network that allows split tunneling, at the same time User Xs home firewall has a rule to allow RDP access from anyone on the outside to his machine.. becuase the corporate split tunnel policy User X internet is not going through corporate firewall, therefore User YY who is a finance hacker expert RDPs into User X machine and he/she will be able to look at finance folders while User X is VPNed into corporate network.

If RA were full tunnel vpn, User YY finance hacker cannot RDP into USER Xs machine because it will required to cross Corporate firewall .

Easy right?

Regards

Jorge Rodriguez
Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: