Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Security-Basics
[Top] [All Lists]

Re: RealVNC Security

Subject: Re: RealVNC Security
Date: Wed, 16 Feb 2005 12:36:03 +0200 (IST)
On Mon, 14 Feb 2005, Adam Kane wrote:

My software company currently uses two specific machines (both running
Windows 2000 Pro) as "VNC" machines.  The purpose for these machines are
to display two of our software products, and allow remote login to the
computers for potential clients (very few ask) to test out the program,
rather than us creating a 30-day trail type of setup.
[...]
Any suggestions on how to keep these machines secure and accessible to
our potential clients, and keeping these machines away from any other
networked computers is appreciated.

Put them on a separate LAN segment and set up your firewall rules so
that only vnc connections are allowed to go to these machines and
nothing allowed to go out from them. This way they will be almost
useless for an attacker and clients will have no way to
unintentionally download adware/viruses. To avoid possibility that one
client pass something to another you can simply save image of the
clean machine and restore it every day (note that it could take <5
minutes to restore 1Gb of data and this can be fully automated).

-- 
Regards,
ASK

<Prev in Thread] Current Thread [Next in Thread>