[KLUG Members] how can I get around a port block to setup vpn?

Tony Gettig members@kalamazoolinux.org
Fri, 21 Nov 2003 08:27:02 -0500


Quoting Bruce Smith <bruce@armintl.com>:

> > I am wanting to setup a vpn between work and home.  At work our
> > internet connection goes through a firewall that I do not control. 
> > They have blocked a number or ports and services.  One of them
> > appears to be vpn.  Is there a way that I can setup a tunnel through
> > the firewall to home that would get by that??  
> > 
> > I also probably need to be able to find what ports are open through
> > the firewall.  Is there a way to test that?  ICMP is blocked.  I know
> > that I could use nessus if I was looking at a computer but since the
> > firewall is a through point would it still work (I have never used
> > nessus but am familiar with it)?
> 
> That's a good way to get yourself fired, or worse ...   (look at the
> COURT CASES against people who were "testing" their employer's security)
> 
> Talk to the people who control the firewall and tell them what you want
> to do.  If they agree, they'll help you.  If not, then forget it.
>  

Ouch. Yeah, there's that part of it too. Policies are probably in place for
that. Being that I'm one of the firewall administrators, tools like firewalk and
nessus help find the holes for me and I don't think twice about using them on my
own network or when testing my network from home. But I wouldn't be doing that
to someone elses network without prior WRITTEN consent and the full knowledge of
higher ups. You would do well to heed Bruce's warning.


-- 
Tony Gettig
Voiceovers, PGP key, and more at
http://gettig.net