adrian_ritz1
Consultant

Re: Deploying Beacon

Yes, but the problem is that the user not all the time are connecting to company network via VPN, they are working from home, and the tools do not require a connection to company VPN, so that we are investigating SFTP for example, SFTP support authentication with certificate for example.

durgeshsing
Active participant

Re: Deploying Beacon

Hi

 

As user is working from home & they must be using Client to side VPN like Cisco any connect or Pulse secure/Juniper.

You can discuss with team who is managing VPN firewall , They may allow beacon URL from VPN firewall. This will solve your problem as Agent will not use much bandwidth for sending inventory.

 

So this could not be a problem for Network side.

0 Kudos
adrian_ritz1
Consultant

Re: Deploying Beacon

I know what you are saying, but in this company they can work from home with no VPN connection to company network, some people can work for months whit out a VPN connection, if  they connect regularly to VPN, then yes this should be a problem.  

0 Kudos
durgeshsing
Active participant

Re: Deploying Beacon

In that case, You can plan move beacon server on DMZ and NAT with public IP & open specfic secure port like 443. So that agent can talk over internet.
0 Kudos
junaid_vengadan
Intrepid explorer

Re: Deploying Beacon

thanks a lot for your feedback @erwinlindemann @mfranz ,

we are working on this , will keep you posted about the process.

 

Regarding the security concerns, i think the WAF\Firewall \ any other gateway level  security device should be configured to check for malwares .

or what about raising an RFE with Flexera products team to enforce malware scan for all incoming files (same as the way FNMS do scanning for uploaded documents)

@mfranz @erwinlindemann @adrian_ritz1  ?

 

Regards,

Junaid Vengadan