Thursday, August 28, 2008

Double edged sword

LogMeIn is a nifty tool that permits you to remotely access your machine from anywhere over the Internet. It is easy to setup as it does not require modification to your existing network. However, it is a double edged sword as it bypasses perimeter security mechanisms in place (eg. firewalls, VPN, DMZ, 2 factor authentication, etc). It is a potential backdoor into your network if compromised by malicious parties. How does LogMeIn work? The host establishes a persistent outbound HTTPS connection to LogMeIn's server and this connection facilitates reverse tunneling from an external browser.

No comments: