cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
317
Views
5
Helpful
1
Replies

Internet Access and Corporate Remote Access VPN

tech_trac
Level 1
Level 1

Hello,

From security perspective, is it safe to allow internet access via Split Tunneling while the users are accessing the corporate network through Remote Access VPN ?

1 Reply 1

JORGE RODRIGUEZ
Level 10
Level 10

Simple answer it poses high securitty risks to corporate network.

will give you an example...

Say User X who works in finance dept Remote access VPN from his home into his work corporate network that allows split tunneling, at the same time User Xs home firewall has a rule to allow RDP access from anyone on the outside to his machine.. becuase the corporate split tunnel policy User X internet is not going through corporate firewall, therefore User YY who is a finance hacker expert RDPs into User X machine and he/she will be able to look at finance folders while User X is VPNed into corporate network.

If RA were full tunnel vpn, User YY finance hacker cannot RDP into USER Xs machine because it will required to cross Corporate firewall .

Easy right?

Regards

Jorge Rodriguez