[OpenVPN home] [Date Prev] [Date Index] [Date Next]
[OpenVPN mailing lists] [Thread Prev] [Thread Index] [Thread Next]
Google
 
Web openvpn.net

Re: [Openvpn-users] OpenVPN Admin Security


  • Subject: Re: [Openvpn-users] OpenVPN Admin Security
  • From: Leonard Isham <leonard.isham@xxxxxxxxx>
  • Date: Wed, 3 Aug 2005 07:04:02 -0400

On 8/2/05, Mike Tancsa <mike@xxxxxxxxxx> wrote:
> At 05:31 PM 02/08/2005, Leonard Isham wrote:
> 
> >...but current Knoppix CDs have UnionFS...
> 
> Build a kernel without the bits you dont want.  Besides, this is not
> designed to stop users from doing thought out malicious things.  Its
> designed to ensure a user starts from a known environment each time and
> reduce exposure to malware that can be used to leverage access to the
> office intranet via the remote vpn.  Its not going to stop users from
> copying the cert off the CD and putting it on their 13yr olds virus ridden
> zombie PC.

True.  I should have stated that UnionFS in the latest Knoppix
releases allow changes that the enduser may not be aware of.  In other
words while the CD is read-only changes can be applied that persist
across boots when using the same computer.

-- 
Leonard Isham, CISSP 
Ostendo non ostento.

____________________________________________
Openvpn-users mailing list
Openvpn-users@xxxxxxxxxxxxxxxxxxxxx
https://lists.sourceforge.net/lists/listinfo/openvpn-users


Warning: require_once(../../../archive_common.php) [function.require-once]: failed to open stream: No such file or directory in /home/openvpn/domains/openvpn.net/public_html/archive/openvpn-users/2005-08/msg00036.html on line 204

Fatal error: require_once() [function.require]: Failed opening required '../../../archive_common.php' (include_path='/usr/local/lib/php') in /home/openvpn/domains/openvpn.net/public_html/archive/openvpn-users/2005-08/msg00036.html on line 204