VPNs Don’t Protect System Security Like They Used To

It’s not your father’s VPN anymore.

Back in the olden days of computing, you were either on the network or you weren’t. Now endpoints are more porous, and getting on a virtual private network doesn’t mean that you’re protected. When you have a lot of iPads and other tablets that can morph into app-strewn malware carriers with just a few clicks, just how effective a security perimeter will this really be?

How safe is your company’s VPN? Tell us by posting a comment below.

Not a great one. Bringing your own device often translates into bringing your own malware onto the company network. And while your IT department has well-crafted policies for running anti-virus and other checks on typical desktops, that might not be enough any more, especially when it comes to VPNs, which provide a very false sense of security.

Having an “app store” model for mobile devices is great for end users. They can find and install something in a matter of seconds and be off and running. But how do you know if the app is what it says it is? You don’t. Do you know if you have connected to a legit app store and if all its apps are screened? Even Apple’s App Store occasionally lets badly formed apps slip through, despite a lengthy and involved vetting process. And they’re usually seen as being the most stringent.

So what’s the alternative? A number of companies are setting up protected WiFi networks that operate outside the corporate firewall — a DMZ of sorts. This way someone running bad apps will only infect others in this zone and not mess with the corporate crown jewels. Or maybe users can’t download anything in this zone and have limited network access and rights. Most of the major WiFi players have equipment that support this mode of operations.

All this should be a motivation toward having some form of data leak protection and intrusion protection products on your network. You want to use the former to make sure that no one is downloading your entire customer database, or even a small subset of it. The latter can be used to stop infections quickly, as long as you have the staff and skills to operate them and understand when they issue the appropriate warnings.

Comments

  1. BY Nelly says:

    Good post! We will be linking to this particularly great content on our website.
    Keep up the good writing.

Post a Comment

Your email address will not be published. Required fields are marked *

You may use these HTML tags and attributes: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>