Great Circle Associates Firewalls
(January 1997)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: Secure Telneting into a internal network
From: Jeff Simms <jsimms @ auracom . com>
Organization: auracom Internet Services
Date: Thu, 30 Jan 1997 13:43:09 -0400
To: "Allen D. Harpham" <aharpham @ cnweb . com>
Cc: Firewalls @ GreatCircle . COM
References: <Pine . LNX . 3 . 94 . 970129221849 . 11124A-100000 @ nebland . cnweb . com>

Allen D. Harpham wrote:
> 
> Hi All,
> 
> Whats a safe way to allow people to telnet into a network past a firewall
> from the Internet?
> 
> I have a client that if possible, needs to allow employees to dial up a
> local ISP and telnet net into their internal network over the Internet.
> 
> We have a packet filtering router setup now, and have proposed adding a
> proxy server in addition to the packet filter.
> 
> I have warned them that allowing any telnet sessions in would be a big
> hole in the firewall, but they would like to pursue this further.
> 
> Any suggestions?
> 
> TIA, Allen
> 


Allowing ppl to telnet into your network through the firewall isnt a
security risk as long as the firewall can deal with it.  If the firewall
is using circuit-level gateways, which it should be if its a decent
firewall, and the authentication on inbound access is enforced using
one-time password tokens then their shouldnt be a problem.  

Jeff Simms
Network Services Manager
auracom Internet Services


References:
Indexed By Date Previous: MS Proxy as a firewall?]
From: Jeff Simms <jsimms @ auracom . com>
Next: RE: Secure Telneting into a internal network
From: "Allen D. Harpham" <aharpham @ cnweb . com>
Indexed By Thread Previous: RE: Secure Telneting into a internal network
From: "Allen D. Harpham" <aharpham @ cnweb . com>
Next: Re: Secure Telneting into a internal network
From: "Nelu Dumitru" <nelu @ matco . ro>

Google
 
Search Internet Search www.greatcircle.com