<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>VPN Haus</title>
	<atom:link href="http://vpnhaus.ncp-e.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://vpnhaus.ncp-e.com</link>
	<description>Rethinking Remote Access</description>
	<lastBuildDate>Wed, 01 Sep 2010 18:50:53 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='vpnhaus.ncp-e.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://0.gravatar.com/blavatar/e33cdc29c0f8b9506f2c669079e8e2d9?s=96&#038;d=http://s2.wp.com/i/buttonw-com.png</url>
		<title>VPN Haus</title>
		<link>http://vpnhaus.ncp-e.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://vpnhaus.ncp-e.com/osd.xml" title="VPN Haus" />
	<atom:link rel='hub' href='http://vpnhaus.ncp-e.com/?pushpress=hub'/>
		<item>
		<title>Mobile Devices like a “Trojan horse” into the Enterprise</title>
		<link>http://vpnhaus.ncp-e.com/2010/09/01/mobile-devices-like-a-%e2%80%9ctrojan-horse%e2%80%9d-into-the-enterprise/</link>
		<comments>http://vpnhaus.ncp-e.com/2010/09/01/mobile-devices-like-a-%e2%80%9ctrojan-horse%e2%80%9d-into-the-enterprise/#comments</comments>
		<pubDate>Wed, 01 Sep 2010 18:50:53 +0000</pubDate>
		<dc:creator>vpnhaus</dc:creator>
				<category><![CDATA[Industry Commentary]]></category>
		<category><![CDATA[Dark Reading]]></category>
		<category><![CDATA[mobile device]]></category>
		<category><![CDATA[trojan horse]]></category>

		<guid isPermaLink="false">http://vpnhaus.ncp-e.com/?p=1354</guid>
		<description><![CDATA[John Hering, CEO of Lookout, a mobile security firm, recently told Dark Reading,  allowing a mobile device access to critical data is “almost a Trojan horse into the enterprise itself. “ Powerful words. We took Hering’s warning to heart and asked several security and enterprise experts: What major security concerns should the enterprise worry about [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=vpnhaus.ncp-e.com&blog=4052628&post=1354&subd=vpnhaus&ref=&feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>John Hering, CEO of Lookout, a mobile security firm, <a href="http:/www.darkreading.com/story/showArticle.jhtml?articleID=226900118">recently told</a> Dark Reading,  allowing a mobile device access to critical data is “almost a Trojan horse into the enterprise itself. “ Powerful words.</p>
<p>We took Hering’s warning to heart and asked several security and enterprise experts: What major security concerns should the enterprise worry about when it comes to mobile devices, mobile terminals &amp; the Windows CE client? Here’s what they had to say.</p>
<p>“One of the biggest risks is user indifference to security. Stats show, thousands of mobile devices (smartphones, USB sticks) are left in cabs, airports, etc. [This leaves] corporate and other data on them vulnerable to whomever finds the device. Along with this physical loss (and theft), the end user likely also loads sensitive corporate data on the device (emails, attachments, data files), increasing the overall risk.” – <a href="http://www.linkedin.com/profile?viewProfile=&amp;key=2498713&amp;authToken=pT5n&amp;authType=name&amp;goback=.mid_I2304830143*42"><span style="color:#000000;">Barry Lewis</span></a>, Owner <a title="Find users who have worked at this company" href="http://www.linkedin.com/search?search=&amp;sortCriteria=R&amp;keepFacets=keepFacets&amp;company=Cerberus+ISC+Inc&amp;currentCompany=co&amp;goback=%2Emid_I2304830143*42"><span style="color:#000000;">Cerberus ISC Inc</span></a></p>
<p>“If the enterprise uses Windows CE clients, they will have thought about the devices and the platform quite thoroughly. This OS is most common in specialized embedded devices, used in Line-Of-Business solutions. Most of the (independent software) vendors in that market will have thought about data encryption, both on the device as well as during communication. The solutions commonly include a device management solution that will encrypt and wipe data on the device remotely when required. Windows Mobile is a whole different story, as those devices are not so specialized and much more consumer oriented.” – <a href="http://www.linkedin.com/profile?viewProfile=&amp;key=1452575&amp;authToken=cEDY&amp;authType=name&amp;goback=.rmg_*1_*1_*1_*1_*1_*1_*1_*1_*1"><span style="color:#000000;">Aart Merkelijn</span></a>, owner of <a href="http://www.linkedin.com/companies/969656"><span style="color:#000000;">iKnowMobility</span></a></p>
<h2><em> </em></h2>
<p>“Massachusetts is one of the few states that have laws specifically targeting encryption for data at rest which contains PII (personally identifiable information). The ‘fix’, if you will, is to have addressed data encryption and maintaining logs to prove [a] missing device was encrypted. If you can get that addressed you will be able to sleep better at night. “ &#8211; <a href="http://www.linkedin.com/profile?viewProfile=&amp;key=8961150&amp;authToken=z5TJ&amp;authType=name&amp;goback=%2Emid_I2305147598*42"><span style="color:#000000;">Phillip Ogle</span></a>, Systems Security Engineer</p>
<p>“The biggest threat to security is the human. Technology can be modified through programming or design. Humans must make a conscious effort to adhere to corporate policies and to police themselves. Policies need to address data at rest and in transit on portable devices.” – <a href="http://www.linkedin.com/profile?viewProfile=&amp;key=39900077&amp;authToken=__6A&amp;authType=name&amp;goback=.mid_I2304799284*42"><span style="color:#000000;">Larry Williams</span></a>, Group Benefits Specialist</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/vpnhaus.wordpress.com/1354/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/vpnhaus.wordpress.com/1354/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/vpnhaus.wordpress.com/1354/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/vpnhaus.wordpress.com/1354/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/vpnhaus.wordpress.com/1354/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/vpnhaus.wordpress.com/1354/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/vpnhaus.wordpress.com/1354/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/vpnhaus.wordpress.com/1354/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/vpnhaus.wordpress.com/1354/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/vpnhaus.wordpress.com/1354/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/vpnhaus.wordpress.com/1354/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/vpnhaus.wordpress.com/1354/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/vpnhaus.wordpress.com/1354/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/vpnhaus.wordpress.com/1354/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=vpnhaus.ncp-e.com&blog=4052628&post=1354&subd=vpnhaus&ref=&feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://vpnhaus.ncp-e.com/2010/09/01/mobile-devices-like-a-%e2%80%9ctrojan-horse%e2%80%9d-into-the-enterprise/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/d30ae0a99d7b481489730392ec6a2a96?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">vpnhaus</media:title>
		</media:content>
	</item>
		<item>
		<title>What We&#8217;re Reading, Week of 8/23</title>
		<link>http://vpnhaus.ncp-e.com/2010/08/27/what-were-reading-week-of-823/</link>
		<comments>http://vpnhaus.ncp-e.com/2010/08/27/what-were-reading-week-of-823/#comments</comments>
		<pubDate>Fri, 27 Aug 2010 17:55:14 +0000</pubDate>
		<dc:creator>vpnhaus</dc:creator>
				<category><![CDATA[Highlights]]></category>
		<category><![CDATA[mobile]]></category>
		<category><![CDATA[Smartphones]]></category>
		<category><![CDATA[Enterprise IT]]></category>
		<category><![CDATA[Vulnerability]]></category>

		<guid isPermaLink="false">http://vpnhaus.ncp-e.com/?p=1352</guid>
		<description><![CDATA[CSO, Sticks and Stones: Picking On Users and Security Pros Dark Reading, Mobile Devices Threaten Enterprises From Within Help Net Security, The Dramatic Increase of Vulnerability Discoslures SC Magazine, Four Tips to Secure Your Smart Phones TechNewsWorld, The New Threats: The Bad Guys Up Their Game<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=vpnhaus.ncp-e.com&blog=4052628&post=1352&subd=vpnhaus&ref=&feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><em>CSO</em>, <a href="http://www.csoonline.com/article/605764/sticks-and-stones-picking-on-users-and-security-pros">Sticks and Stones: Picking On Users and Security Pros</a><br />
<em>Dark Reading</em>, <a href="http://www.darkreading.com/insiderthreat/security/vulnerabilities/showArticle.jhtml?articleID=226900118&amp;cid=RSSfeed">Mobile Devices Threaten Enterprises From Within</a><br />
<em>Help Net Security</em>, <a href="http://www.net-security.org/secworld.php?id=9784">The Dramatic Increase of Vulnerability Discoslures<br />
</a><em>SC Magazine</em>, <a href="http://www.securecomputing.net.au/News/229794,four-tips-to-secure-your-smart-phones.aspx?utm_source=twitterfeed%26utm_medium=twitter">Four Tips to Secure Your Smart Phones</a><br />
<em>TechNewsWorld</em>, <a href="http://www.technewsworld.com/story/The-New-Threats-Part-1-The-Bad-Guys-Up-Their-Game-70670.html?wlc=1282760481">The New Threats: The Bad Guys Up Their Game</a></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/vpnhaus.wordpress.com/1352/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/vpnhaus.wordpress.com/1352/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/vpnhaus.wordpress.com/1352/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/vpnhaus.wordpress.com/1352/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/vpnhaus.wordpress.com/1352/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/vpnhaus.wordpress.com/1352/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/vpnhaus.wordpress.com/1352/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/vpnhaus.wordpress.com/1352/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/vpnhaus.wordpress.com/1352/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/vpnhaus.wordpress.com/1352/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/vpnhaus.wordpress.com/1352/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/vpnhaus.wordpress.com/1352/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/vpnhaus.wordpress.com/1352/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/vpnhaus.wordpress.com/1352/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=vpnhaus.ncp-e.com&blog=4052628&post=1352&subd=vpnhaus&ref=&feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://vpnhaus.ncp-e.com/2010/08/27/what-were-reading-week-of-823/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/d30ae0a99d7b481489730392ec6a2a96?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">vpnhaus</media:title>
		</media:content>
	</item>
		<item>
		<title>New Survey: Employees Complain About IT Security Policies</title>
		<link>http://vpnhaus.ncp-e.com/2010/08/26/new-survey-employees-complain-about-it-security-policies/</link>
		<comments>http://vpnhaus.ncp-e.com/2010/08/26/new-survey-employees-complain-about-it-security-policies/#comments</comments>
		<pubDate>Thu, 26 Aug 2010 18:40:04 +0000</pubDate>
		<dc:creator>vpnhaus</dc:creator>
				<category><![CDATA[IT policy]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[employee security]]></category>
		<category><![CDATA[IT security]]></category>
		<category><![CDATA[information security]]></category>

		<guid isPermaLink="false">http://vpnhaus.ncp-e.com/?p=1346</guid>
		<description><![CDATA[You know the scenario, you implement your organization’s security policy, and then within minutes can hear employees groaning and mumbling about IT. According to a new survey, employees don’t just complain to each other – they are now complaining directly to IT. Four in 10 CIOs interviewed for the Robert Half Technology survey said that [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=vpnhaus.ncp-e.com&blog=4052628&post=1346&subd=vpnhaus&ref=&feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>You know the scenario, you implement your organization’s security policy, and then within minutes can hear employees groaning and mumbling about IT. <a href="http://www.prnewswire.com/news-releases/firewall-frustrations-cios-surveyed-say-employees-complain-about-it-security-policies-101550443.html">According to a new survey</a>, employees don’t just complain to each other – they are now complaining directly to IT.</p>
<p>Four in 10 CIOs interviewed for the Robert Half Technology survey said that it&#8217;s at least “somewhat common for employees to complain about security measures that limit which websites or networks they can visit at the office.”</p>
<p>IT professionals have long grappled with being the organization’s “bad guys,” limiting access and denying service to frustrated employees. To dodge outright mutiny, IT professionals can help employees better understand why we have to restrict and monitor what they do. To do this, we’ve turned the survey&#8217;s suggestions for employees confronting IT administrators on its head to make the list for IT professionals.</p>
<ul>
<li><strong>Be      Open to Questions</strong>.      Nobody likes to be told policies exist “just because.” If an employee      wants to know why a certain site or network is restricted, tell them why.      And if they’re not super tech-savvy, do so in laymen’s terms. The answer      can be simple, but fostering this dialogue will make employees more      comfortable with restrictions.</li>
<li><strong>Listen to Business Cases<em>.</em></strong><em> </em>IT professionals are sometimes so far removed      from the rest of the organization, they don’t understand why blocking      certain sites and networks is detrimental to business. When employees are      making legitimate business cases to change the IT policy, listen. We’ve      heard stories of IT departments blocking social media channels at news      organizations, leaving reporters scrambling on their mobile devices to catch      up on breaking news stories.</li>
<li><strong>Explain Your Role. </strong>Let employees know that your job isn’t to deny      them access to “fun” sites, it’s to protect the organization’s security.      The better they understand your role, the more the policies will make      sense.</li>
<li><strong>Be flexible. </strong>When possible, work with the employees. For      example, set up one computer in the office that isn’t restricted so      employees can occasionally access restricted sites. Compromises like this      go a long way in helping employees make peace with IT security policies.</li>
</ul>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/vpnhaus.wordpress.com/1346/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/vpnhaus.wordpress.com/1346/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/vpnhaus.wordpress.com/1346/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/vpnhaus.wordpress.com/1346/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/vpnhaus.wordpress.com/1346/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/vpnhaus.wordpress.com/1346/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/vpnhaus.wordpress.com/1346/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/vpnhaus.wordpress.com/1346/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/vpnhaus.wordpress.com/1346/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/vpnhaus.wordpress.com/1346/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/vpnhaus.wordpress.com/1346/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/vpnhaus.wordpress.com/1346/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/vpnhaus.wordpress.com/1346/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/vpnhaus.wordpress.com/1346/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=vpnhaus.ncp-e.com&blog=4052628&post=1346&subd=vpnhaus&ref=&feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://vpnhaus.ncp-e.com/2010/08/26/new-survey-employees-complain-about-it-security-policies/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/d30ae0a99d7b481489730392ec6a2a96?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">vpnhaus</media:title>
		</media:content>
	</item>
		<item>
		<title>What We&#8217;re Reading, Week of 8/16</title>
		<link>http://vpnhaus.ncp-e.com/2010/08/20/what-were-reading-week-of-816/</link>
		<comments>http://vpnhaus.ncp-e.com/2010/08/20/what-were-reading-week-of-816/#comments</comments>
		<pubDate>Fri, 20 Aug 2010 19:46:17 +0000</pubDate>
		<dc:creator>vpnhaus</dc:creator>
				<category><![CDATA[Highlights]]></category>
		<category><![CDATA[VPN]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[remote access]]></category>

		<guid isPermaLink="false">http://vpnhaus.ncp-e.com/?p=1341</guid>
		<description><![CDATA[Dark Reading, Ferreting Out Rogue Access Points and Wireless Vulnerabilities InfoWorld, 5 Reasons IT Pros Should Be Paranoid Computerworld, Managing and securing iOS 4 devices at work Technorati, Why a Blackberry Ban Won&#8217;t Affect Privacy PCWorld, Google CEO Exposes Dark Side of Social Networking<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=vpnhaus.ncp-e.com&blog=4052628&post=1341&subd=vpnhaus&ref=&feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><em>Dark  Reading,</em> <a title="blocked::http://www.darkreading.com/vulnerability_management/security/vulnerabilities/showArticle.jhtml?articleID=226700495&amp;cid=RSSfeed" href="http://www.darkreading.com/vulnerability_management/security/vulnerabilities/showArticle.jhtml?articleID=226700495&amp;cid=RSSfeed">Ferreting  Out Rogue Access Points and Wireless Vulnerabilities</a></p>
<p><em>InfoWorld</em>,  <a title="blocked::http://www.infoworld.com/d/adventures-in-it/5-reasons-it-pros-should-be-paranoid-628" href="http://www.infoworld.com/d/adventures-in-it/5-reasons-it-pros-should-be-paranoid-628">5  Reasons IT Pros Should Be Paranoid</a></p>
<p><em>Computerworld, </em><a title="blocked::http://www.computerworld.com/s/article/9180268/Managing_and_securing_iOS_4_devices_at_work http://www.computerworld.com/s/article/9180268/Managing_and_securing_iOS_4_devices_at_work" href="http://www.computerworld.com/s/article/9180268/Managing_and_securing_iOS_4_devices_at_work">Managing  and securing iOS 4 devices at work</a></p>
<p><em>Technorati,</em> <a title="blocked::http://technorati.com/technology/article/why-a-blackberry-ban-wont-affect1/" href="http://technorati.com/technology/article/why-a-blackberry-ban-wont-affect1/">Why  a Blackberry Ban Won&#8217;t Affect Privacy</a></p>
<p><em>PCWorld,</em> <a title="blocked::http://www.pcworld.com/businesscenter/article/203547/google_ceo_exposes_dark_side_of_social_networking.html" href="http://www.pcworld.com/businesscenter/article/203547/google_ceo_exposes_dark_side_of_social_networking.html">Google  CEO Exposes Dark Side of Social Networking</a></p>
<div class="tweetmeme-button" id="tweetmeme-button-post-1341" style='float: right; margin-left: 10px; margin-bottom: 5px; padding: 4px 0 2px 4px; background: #fff;'>
<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fvpnhaus.ncp-e.com%2F2010%2F08%2F20%2Fwhat-were-reading-week-of-816%2Ftweetmeme_alias%3Dhttp%3A%2F%2Fwp.me%2Fph0gY-lD%26tweetmeme_source%3D%E2%80%9Dvpnhaus%E2%80%9D"><img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fvpnhaus.ncp-e.com%2F2010%2F08%2F20%2Fwhat-were-reading-week-of-816%2F" height="61" width="51" /></a>
</div>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/vpnhaus.wordpress.com/1341/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/vpnhaus.wordpress.com/1341/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/vpnhaus.wordpress.com/1341/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/vpnhaus.wordpress.com/1341/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/vpnhaus.wordpress.com/1341/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/vpnhaus.wordpress.com/1341/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/vpnhaus.wordpress.com/1341/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/vpnhaus.wordpress.com/1341/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/vpnhaus.wordpress.com/1341/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/vpnhaus.wordpress.com/1341/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/vpnhaus.wordpress.com/1341/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/vpnhaus.wordpress.com/1341/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/vpnhaus.wordpress.com/1341/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/vpnhaus.wordpress.com/1341/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=vpnhaus.ncp-e.com&blog=4052628&post=1341&subd=vpnhaus&ref=&feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://vpnhaus.ncp-e.com/2010/08/20/what-were-reading-week-of-816/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/d30ae0a99d7b481489730392ec6a2a96?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">vpnhaus</media:title>
		</media:content>
	</item>
		<item>
		<title>Q&amp;A on IT/HR collaboration with Volodymyr Styran</title>
		<link>http://vpnhaus.ncp-e.com/2010/08/19/qa-on-ithr-collaboration-with-volodymyr-styran/</link>
		<comments>http://vpnhaus.ncp-e.com/2010/08/19/qa-on-ithr-collaboration-with-volodymyr-styran/#comments</comments>
		<pubDate>Thu, 19 Aug 2010 20:32:58 +0000</pubDate>
		<dc:creator>vpnhaus</dc:creator>
				<category><![CDATA[Expert Q&A]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[provisioning]]></category>
		<category><![CDATA[IT]]></category>
		<category><![CDATA[HR]]></category>
		<category><![CDATA[IT security]]></category>

		<guid isPermaLink="false">http://vpnhaus.ncp-e.com/?p=1336</guid>
		<description><![CDATA[VPN Haus spoke with Volodymyr Styran, a security expert, about ways IT professionals can work more closely with HR on issues like provisioning. VPN Haus has long advocated for IT departments to make user provisioning a higher priority and Stryan has some ideas on how this collaboration can be turned into reality. VPN Haus:  Let’s [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=vpnhaus.ncp-e.com&blog=4052628&post=1336&subd=vpnhaus&ref=&feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>VPN Haus spoke with <a href="http://www.linkedin.com/profile?viewProfile=&amp;key=3624899&amp;authToken=04tb&amp;authType=name&amp;goback=.rmg_*1_*1_*1_*1_*1_*1_*1_*1_*1">Volodymyr Styran</a>, a security expert, about ways IT professionals can work more closely with HR on issues like <a href="http://www.scmagazineus.com/why-user-provisioning-matters/article/172899/">provisioning</a>. VPN Haus has long advocated for IT departments to make user provisioning a higher priority and Stryan has some ideas on how this collaboration can be turned into reality.</p>
<p><strong>VPN Haus:  Let’s start with basic tampering. How can IT administrators prevent users, especially ones who are tech-savvy themselves, from tampering with settings? </strong></p>
<p><strong>Styran</strong>:  I&#8217;d suggest application of strong organizational policies and thorough logging of user actions. Changes to local policies are usually reflected in [programs like] Eventlog. Collect it centrally in a separate log management facility, review the logs regularly, and follow up the findings via disciplinary action. This may sound a bit aggressive, and is rather reactive than preventive, but in my opinion this is the most effective approach.</p>
<p><strong>VPN Haus:  What’s the greatest enforcement challenge? </strong></p>
<p><strong>Stryan</strong>: The greatest enforcement challenge is making HR execute disciplinary action. Punishing is not their favorite part of the job, because it affects image&#8230;So, when it comes to HR, one has to present and explain every bit of risk and harm introduced by a violation. And all this definitely makes little sense unless strong administrative policies are established beforehand.</p>
<p><strong>VPN Haus:  Can you provide 3 &#8211; 5 tips on how IT departments could work more closely with HR to foster better communication between the departments?</strong></p>
<p><strong>Stryan</strong>:  Sure.</p>
<p>- Be friendly, while being firm when needed.<br />
- Make it formal, while maintaining good relationships. Write your policies firm and strict, but socialize with HR in a positive manner.<br />
- Pay more attention to HR’s needs and concerns; this is relevant to relationships with any other non-IT function as well.<br />
- Always explain. [In most cases,] they know next to nothing about [IT]. &#8220;We know better&#8221; doesn&#8217;t work. Although, the more you explain in the beginning, the less explanations they will need later on. This is how trust is developed with time.</p>
<p><em>Volodymyr Styran is based in Ukraine. </em></p>
<div class="tweetmeme-button" id="tweetmeme-button-post-1336" style='float: right; margin-left: 10px; margin-bottom: 5px; padding: 4px 0 2px 4px; background: #fff;'>
<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fvpnhaus.ncp-e.com%2F2010%2F08%2F19%2Fqa-on-ithr-collaboration-with-volodymyr-styran%2Ftweetmeme_alias%3Dhttp%3A%2F%2Fwp.me%2Fph0gY-ly%26tweetmeme_source%3D%E2%80%9Dvpnhaus%E2%80%9D"><img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fvpnhaus.ncp-e.com%2F2010%2F08%2F19%2Fqa-on-ithr-collaboration-with-volodymyr-styran%2F" height="61" width="51" /></a>
</div>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/vpnhaus.wordpress.com/1336/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/vpnhaus.wordpress.com/1336/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/vpnhaus.wordpress.com/1336/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/vpnhaus.wordpress.com/1336/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/vpnhaus.wordpress.com/1336/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/vpnhaus.wordpress.com/1336/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/vpnhaus.wordpress.com/1336/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/vpnhaus.wordpress.com/1336/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/vpnhaus.wordpress.com/1336/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/vpnhaus.wordpress.com/1336/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/vpnhaus.wordpress.com/1336/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/vpnhaus.wordpress.com/1336/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/vpnhaus.wordpress.com/1336/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/vpnhaus.wordpress.com/1336/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=vpnhaus.ncp-e.com&blog=4052628&post=1336&subd=vpnhaus&ref=&feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://vpnhaus.ncp-e.com/2010/08/19/qa-on-ithr-collaboration-with-volodymyr-styran/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/d30ae0a99d7b481489730392ec6a2a96?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">vpnhaus</media:title>
		</media:content>
	</item>
		<item>
		<title>Ready or Not, IPv6 Security Threats are Coming</title>
		<link>http://vpnhaus.ncp-e.com/2010/08/17/ready-or-not-ipv6-security-threats-are-coming/</link>
		<comments>http://vpnhaus.ncp-e.com/2010/08/17/ready-or-not-ipv6-security-threats-are-coming/#comments</comments>
		<pubDate>Tue, 17 Aug 2010 21:19:53 +0000</pubDate>
		<dc:creator>vpnhaus</dc:creator>
				<category><![CDATA[Industry Commentary]]></category>
		<category><![CDATA[VPN]]></category>
		<category><![CDATA[IPv6]]></category>
		<category><![CDATA[Defcon]]></category>

		<guid isPermaLink="false">http://vpnhaus.ncp-e.com/?p=1328</guid>
		<description><![CDATA[There’s a simple math problem causing quite a lot of pain for companies who use the Internet. Here’s the math: 7 billion does not equal 4 billion. As simple as this statement is, the complexity it creates is staggering. IPv4 represents the smaller sum. The solution of course is IPv6 with it’s 128-bit scheme, compared [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=vpnhaus.ncp-e.com&blog=4052628&post=1328&subd=vpnhaus&ref=&feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><a href="http://vpnhaus.files.wordpress.com/2010/08/ipv6.gif"><img class="alignright size-medium wp-image-1331" title="ipv6" src="http://vpnhaus.files.wordpress.com/2010/08/ipv6.gif?w=230&#038;h=300" alt="" width="230" height="300" /></a>There’s a simple math problem causing quite a lot of pain for companies who use the Internet. Here’s the math: 7 billion does not equal 4 billion. As simple as this statement is, the complexity it creates is staggering. IPv4 represents the smaller sum. The solution of course is IPv6 with it’s 128-bit scheme, compared to the 32-bit predecessor. That equates roughly to 3.4&#215;1038 unique addresses, enough to cover the 7 billion people on the planet today and more than enough to substantially future-proof the protocol until we’re all well done and gone. The security threat for companies in this situation is how to update all the technology they rely on that runs, processes or navigates any Internet data stream.</p>
<p>First, let’s cover the baked-in security of IPv6 protocol stack. Is simple terms, the major difference is section RFC4601 which mandates use of IPsec for all nodes – something available for IPv4, however, not required. The large address space in IPv6 safeguards against port scanning. Again, there’s math here that Samuel Sotillo details in his <a href="http://www.infosecwriters.com/text_resources/pdf/IPv6_SSotillo.pdf">East Carolina University paper</a>. Changes to the authentication header, encapsulating security payload, transport and tunnel modes, protocol negotiation and key exchange, and neighbor discovery and address auto-configuration further improve security.</p>
<p><a href="http://www.defcon.org/">Defcon</a> speaker, <a href="http://samsclass.info/defcon.html">Sam Bowne</a> warns the industry that adoption will likely cause “severe security headaches” because IT professionals haven’t really dug into the issue yet as it’s not widely adopted today. What is happening today is a slow rollout – or a dual-stack environment – where both v4 and v6 are comingling, creating two infrastructures to secure instead of just one. Bowne stressed during his presentation that it is extremely important for white-hat hackers to dig in and identify these threats.  Sotillo identifies a few areas worthy of inspection, including header manipulation issues such as spoofing, and flooding issues such as Smurf-type attacks on multicast traffic. Jake Kouns and Daniel Minoli dive into these issues in detail with their 2008 book, <a href="http://www.infosectoday.com/Articles/Basic_IPv6_Security_Considerations.htm">Security in an IPv6 Environment</a>.</p>
<p>Interestingly enough, much of the advice given as far back as 2005 has still not been widely adopted. For example, <a href="http://searchsecurity.techtarget.com/tip/1,289483,sid14_gci1101218_mem1,00.html">Mike Chapple, CISSP</a>, offered five tips that networking pro’s should pay attention to, including education across configuration, new tunneling protocols risks and addressing complexity created by auto-configurations. Yet most professionals are still unfamiliar, according to a recent article by <a href="http://searchsecurity.techtarget.com/news/article/0,289142,sid14_gci1379186_mem1,00.html">Robert Westervelt of <em>SearchSecurity.com</em></a><em>. </em></p>
<p>Buffer overflows and bugs will be an issue with the IPv6 transition as well.  Joe Klein, Defcon attendee and subject matter expert with the <a href="http://www.nav6tf.org/">North American IPv6 Task Force</a>, states that it will take years for the bugs and flaws to be worked out, but will do so as it starts to gain wide acceptance.  One particular flaw that is unique to IPv6 and causes chaos in networks is packet amplification attacks.  This particular attack places a 0 in the routing header of each packet, and causes them to travel in a looped path.  Ping pong exploits then take advantage of the 64 subnets available in the protocol, and allows attackers to send packets from one non-existent connection to another.  This results in an ongoing series of ICMP Unreachable error messages and floods the network with wasteful data. In a <a href="http://blogs.techrepublic.com.com/networking/?p=688">podcast with TechRepublic’s Michael Kassner</a>, Klein gives a great overview to of some of other issues that’s worth a listen.</p>
<p>IPv6 is a completely new protocol, not a simple patch slapped on existing IPv4 technology. Any technology has to be able to handle these changes, including VPN, routers, intrusion detection and prevention, firewalls, network access control (NAC) solutions. Work-around solutions create gaps and gaps are what hackers exploit.</p>
<div class="tweetmeme-button" id="tweetmeme-button-post-1328" style='float: right; margin-left: 10px; margin-bottom: 5px; padding: 4px 0 2px 4px; background: #fff;'>
<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fvpnhaus.ncp-e.com%2F2010%2F08%2F17%2Fready-or-not-ipv6-security-threats-are-coming%2Ftweetmeme_alias%3Dhttp%3A%2F%2Fwp.me%2Fph0gY-lq%26tweetmeme_source%3D%E2%80%9Dvpnhaus%E2%80%9D"><img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fvpnhaus.ncp-e.com%2F2010%2F08%2F17%2Fready-or-not-ipv6-security-threats-are-coming%2F" height="61" width="51" /></a>
</div>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/vpnhaus.wordpress.com/1328/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/vpnhaus.wordpress.com/1328/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/vpnhaus.wordpress.com/1328/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/vpnhaus.wordpress.com/1328/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/vpnhaus.wordpress.com/1328/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/vpnhaus.wordpress.com/1328/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/vpnhaus.wordpress.com/1328/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/vpnhaus.wordpress.com/1328/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/vpnhaus.wordpress.com/1328/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/vpnhaus.wordpress.com/1328/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/vpnhaus.wordpress.com/1328/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/vpnhaus.wordpress.com/1328/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/vpnhaus.wordpress.com/1328/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/vpnhaus.wordpress.com/1328/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=vpnhaus.ncp-e.com&blog=4052628&post=1328&subd=vpnhaus&ref=&feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://vpnhaus.ncp-e.com/2010/08/17/ready-or-not-ipv6-security-threats-are-coming/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/d30ae0a99d7b481489730392ec6a2a96?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">vpnhaus</media:title>
		</media:content>

		<media:content url="http://vpnhaus.files.wordpress.com/2010/08/ipv6.gif?w=230" medium="image">
			<media:title type="html">ipv6</media:title>
		</media:content>
	</item>
		<item>
		<title>What We&#8217;re Reading, Week of 8/9</title>
		<link>http://vpnhaus.ncp-e.com/2010/08/13/what-were-reading-week-of-89/</link>
		<comments>http://vpnhaus.ncp-e.com/2010/08/13/what-were-reading-week-of-89/#comments</comments>
		<pubDate>Fri, 13 Aug 2010 13:51:04 +0000</pubDate>
		<dc:creator>vpnhaus</dc:creator>
				<category><![CDATA[Highlights]]></category>
		<category><![CDATA[VPN]]></category>
		<category><![CDATA[remote access]]></category>
		<category><![CDATA[mobile]]></category>
		<category><![CDATA[Windows 7]]></category>
		<category><![CDATA[Cloud]]></category>

		<guid isPermaLink="false">http://vpnhaus.ncp-e.com/?p=1315</guid>
		<description><![CDATA[Computerworld, Five Windows 7 Security Features that Businesses Need to Know About CSO, Workarounds: 5 Ways Employees Try To Access Restricted Sites Dark Reading, Flawed Deployments Undermine Kerberos Security InfoSecurity, A Clear Future for a Cloudy Concept: Importance of a Strong VPN SC Magazine, BBC Experiments With Mobile Spyware As It Creates And Tests A [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=vpnhaus.ncp-e.com&blog=4052628&post=1315&subd=vpnhaus&ref=&feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<div>
<p><em>Computerworld,</em> <a title="http://www.computerworld.com/s/article/9179749/Five_Windows_7_security_features_that_businesses_need_to_know_about?taxonomyId=125&amp;pageNumber=1" href="http://www.computerworld.com/s/article/9179749/Five_Windows_7_security_features_that_businesses_need_to_know_about?taxonomyId=125&amp;pageNumber=1">Five Windows 7 Security Features that Businesses Need to Know About</a></p>
<p><em>CSO,</em> <a title="http://www.csoonline.com/article/602925/workarounds-5-ways-employees-try-to-access-restricted-sites?source=rss_cso_exclude_net_net" href="http://www.csoonline.com/article/602925/workarounds-5-ways-employees-try-to-access-restricted-sites?source=rss_cso_exclude_net_net">Workarounds: 5 Ways Employees Try To Access Restricted Sites</a></p>
<p><em>Dark Reading,</em> <a title="http://www.darkreading.com/authentication/security/encryption/showArticle.jhtml?articleID=226600201" href="http://www.darkreading.com/authentication/security/encryption/showArticle.jhtml?articleID=226600201">Flawed Deployments Undermine Kerberos Security</a></p>
<p><em>InfoSecurity,</em> <a href="http://www.infosecurity-magazine.com/view/11497/a-clear-future-for-a-cloudy-concept-/">A Clear Future for a Cloudy Concept: Importance of a Strong VPN</a></p>
<p><em>SC Magazine, </em><a title="http://www.scmagazineuk.com/bbc-experiments-with-mobile-spyware-as-it-creates-and-tests-a-malicious-application/article/176679/" href="http://www.scmagazineuk.com/bbc-experiments-with-mobile-spyware-as-it-creates-and-tests-a-malicious-application/article/176679/">BBC Experiments With Mobile Spyware As It Creates And Tests A Malicious Application</a></p>
<p><em>SearchEnterpriseWAN.com, </em><a title="http://searchenterprisewan.techtarget.com/tip/0,289483,sid200_gci1518107,00.html" href="http://searchenterprisewan.techtarget.com/tip/0,289483,sid200_gci1518107,00.html">Knowing When To Outsource VPN Services</a></p>
<div class="tweetmeme-button" id="tweetmeme-button-post-1315" style='float: right; margin-left: 10px; margin-bottom: 5px; padding: 4px 0 2px 4px; background: #fff;'>
<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fvpnhaus.ncp-e.com%2F2010%2F08%2F13%2Fwhat-were-reading-week-of-89%2Ftweetmeme_alias%3Dhttp%3A%2F%2Fwp.me%2Fph0gY-ld%26tweetmeme_source%3D%E2%80%9Dvpnhaus%E2%80%9D"><img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fvpnhaus.ncp-e.com%2F2010%2F08%2F13%2Fwhat-were-reading-week-of-89%2F" height="61" width="51" /></a>
</div>
</div>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/vpnhaus.wordpress.com/1315/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/vpnhaus.wordpress.com/1315/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/vpnhaus.wordpress.com/1315/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/vpnhaus.wordpress.com/1315/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/vpnhaus.wordpress.com/1315/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/vpnhaus.wordpress.com/1315/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/vpnhaus.wordpress.com/1315/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/vpnhaus.wordpress.com/1315/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/vpnhaus.wordpress.com/1315/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/vpnhaus.wordpress.com/1315/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/vpnhaus.wordpress.com/1315/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/vpnhaus.wordpress.com/1315/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/vpnhaus.wordpress.com/1315/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/vpnhaus.wordpress.com/1315/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=vpnhaus.ncp-e.com&blog=4052628&post=1315&subd=vpnhaus&ref=&feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://vpnhaus.ncp-e.com/2010/08/13/what-were-reading-week-of-89/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/d30ae0a99d7b481489730392ec6a2a96?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">vpnhaus</media:title>
		</media:content>
	</item>
		<item>
		<title>Q&amp;A with Rob Shein, IT Security Expert</title>
		<link>http://vpnhaus.ncp-e.com/2010/08/12/qa-with-rob-shein-it-security-expert/</link>
		<comments>http://vpnhaus.ncp-e.com/2010/08/12/qa-with-rob-shein-it-security-expert/#comments</comments>
		<pubDate>Thu, 12 Aug 2010 13:40:03 +0000</pubDate>
		<dc:creator>vpnhaus</dc:creator>
				<category><![CDATA[Expert Q&A]]></category>
		<category><![CDATA[IT]]></category>
		<category><![CDATA[management]]></category>
		<category><![CDATA[Policy settings]]></category>
		<category><![CDATA[remote access]]></category>

		<guid isPermaLink="false">http://vpnhaus.ncp-e.com/?p=1317</guid>
		<description><![CDATA[VPN Haus recently talked to Rob Shein, a Washington, DC-based IT security expert. Shein gives us his perspective on managing IT security for organizations. VPN Haus: Let’s start basic. How do you prevent users from tampering with policy settings? Rob Shein: Most technical solutions with policies that can be defined at a central management point [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=vpnhaus.ncp-e.com&blog=4052628&post=1317&subd=vpnhaus&ref=&feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><a href="http://vpnhaus.files.wordpress.com/2010/08/technology_management_lg_foc.png"><img class="alignright size-medium wp-image-1318" title="Technology_management_LG_FOC" src="http://vpnhaus.files.wordpress.com/2010/08/technology_management_lg_foc.png?w=300&#038;h=109" alt="" width="300" height="109" /></a>VPN Haus recently talked to <a href="http://www.linkedin.com/profile?viewProfile=&amp;key=4456125&amp;authToken=uN2Z&amp;authType=name&amp;trk=mp_view_prf_t">Rob Shein</a>, a Washington, DC-based IT security expert. Shein gives us his perspective on managing IT security for organizations.</p>
<p><strong>VPN Haus</strong>: <strong>Let’s start basic. How do you prevent users from tampering with policy settings?</strong></p>
<p><strong>Rob Shein</strong>: Most technical solutions with policies that can be defined at a central management point also have the ability to lock them down, so that only administrators can change them. If you&#8217;re using a product that doesn&#8217;t have centralized policy management&#8230;replace it.</p>
<p><strong>VPN Haus</strong>: <strong>That’s a good point. Let’s talk more about why is centralized management so crucial for IT management.</strong></p>
<p><strong>Shein</strong>: Centralized management is crucial for IT management for a number of reasons. The first is simply a question of scale; without a central point for control over functionality, the cost of operating an IT environment will grow horrendously as the environment grows in size. Imagine configuring Cisco switches by having to keep track of separate logins and passwords for each one, as well as documenting each one&#8217;s configuration using Notepad. Just keeping things operating would be a nightmare.</p>
<p>Then, add to that the challenge of ensuring that system drift doesn&#8217;t occur, ensuring that systems are configured and operating as they should be; this challenge has a real monetary impact on it when compliance comes into play, and audits need to be performed. Both the cost of the audit and the risk of being found in noncompliance go up. Last of all, there is the increased effort and risk of changing an environment, either as part of an integration project or addressing a security risk across the enterprise.</p>
<p><strong>VPN Haus</strong>: <strong>With the remote access landscape changing so rapidly, sometimes IT administrators have to make quick changes “on the fly.” What should they take into account when doing this?</strong></p>
<p><strong>Shein</strong>: IT administrators should never make changes &#8220;on the fly,&#8221; but should work with change control. The larger the environment, the more important this becomes, as there are more and more dependencies and less obvious ramifications from certain kinds of change. The wireless landscape may change quickly, but the actual installed base of technologies in any enterprise doesn&#8217;t change at the same rate.</p>
<p><em><strong>View Rob’s <a href="http://www.linkedin.com/ppl/webprofile?vmi=&amp;id=4456125&amp;pvs=pp&amp;authToken=uN2Z&amp;authType=name&amp;locale=en_US&amp;trk=ppro_viewmore&amp;lnk=vw_pprofile">LinkedIn</a></strong></em></p>
<div class="tweetmeme-button" id="tweetmeme-button-post-1317" style='float: right; margin-left: 10px; margin-bottom: 5px; padding: 4px 0 2px 4px; background: #fff;'>
<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fvpnhaus.ncp-e.com%2F2010%2F08%2F12%2Fqa-with-rob-shein-it-security-expert%2Ftweetmeme_alias%3Dhttp%3A%2F%2Fwp.me%2Fph0gY-lf%26tweetmeme_source%3D%E2%80%9Dvpnhaus%E2%80%9D"><img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fvpnhaus.ncp-e.com%2F2010%2F08%2F12%2Fqa-with-rob-shein-it-security-expert%2F" height="61" width="51" /></a>
</div>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/vpnhaus.wordpress.com/1317/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/vpnhaus.wordpress.com/1317/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/vpnhaus.wordpress.com/1317/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/vpnhaus.wordpress.com/1317/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/vpnhaus.wordpress.com/1317/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/vpnhaus.wordpress.com/1317/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/vpnhaus.wordpress.com/1317/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/vpnhaus.wordpress.com/1317/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/vpnhaus.wordpress.com/1317/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/vpnhaus.wordpress.com/1317/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/vpnhaus.wordpress.com/1317/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/vpnhaus.wordpress.com/1317/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/vpnhaus.wordpress.com/1317/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/vpnhaus.wordpress.com/1317/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=vpnhaus.ncp-e.com&blog=4052628&post=1317&subd=vpnhaus&ref=&feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://vpnhaus.ncp-e.com/2010/08/12/qa-with-rob-shein-it-security-expert/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/d30ae0a99d7b481489730392ec6a2a96?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">vpnhaus</media:title>
		</media:content>

		<media:content url="http://vpnhaus.files.wordpress.com/2010/08/technology_management_lg_foc.png?w=300" medium="image">
			<media:title type="html">Technology_management_LG_FOC</media:title>
		</media:content>
	</item>
		<item>
		<title>Podcast: Securing Mobile Devices for Healthcare Organizations</title>
		<link>http://vpnhaus.ncp-e.com/2010/08/10/podcast-securing-mobile-devices-for-healthcare-organizations/</link>
		<comments>http://vpnhaus.ncp-e.com/2010/08/10/podcast-securing-mobile-devices-for-healthcare-organizations/#comments</comments>
		<pubDate>Tue, 10 Aug 2010 13:48:30 +0000</pubDate>
		<dc:creator>vpnhaus</dc:creator>
				<category><![CDATA[Industry Commentary]]></category>
		<category><![CDATA[healthcare]]></category>
		<category><![CDATA[mobile devices]]></category>
		<category><![CDATA[Podcast]]></category>
		<category><![CDATA[eHealth]]></category>
		<category><![CDATA[mobile health]]></category>

		<guid isPermaLink="false">http://vpnhaus.ncp-e.com/?p=1300</guid>
		<description><![CDATA[As healthcare organizations move online to comply with new regulations and to streamline their operations, many organizations are facing compatibility, compliance, and security challenges. Fred Cruz, IT director at American Hospice, recently spoke with HealthInfoSecurity.com about navigating his organization through this very scenario. In the podcast, Cruz describes how he moved 180 home health workers [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=vpnhaus.ncp-e.com&blog=4052628&post=1300&subd=vpnhaus&ref=&feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><a href="http://vpnhaus.files.wordpress.com/2010/08/fred-cruz.jpg"><img class="alignleft size-full wp-image-1302" title="Fred Cruz" src="http://vpnhaus.files.wordpress.com/2010/08/fred-cruz.jpg?w=138&#038;h=184" alt="" width="138" height="184" /></a>As healthcare organizations move online to comply with new regulations and to streamline their operations, many organizations are facing compatibility, compliance, and security challenges. Fred Cruz, IT director at American Hospice, <a href="http://www.healthcareinfosecurity.com/podcasts.php?podcastID=660">recently spoke</a> with <a href="http://www.healthcareinfosecurity.com/index.php"><em>HealthInfoSecurity.com</em> </a>about navigating his organization through this very scenario.</p>
<p>In the podcast, Cruz describes how he moved 180 home health workers from using an expensive, time-consuming paper-based system to using mobile devices to update their files in real-time. The move streamlined American Hospice’s scheduling and tracking system, as well as increased its cash flows. According to HealthInfoSecurity.com:</p>
<p><em>In the podcast, Cruz explains how outlines the security strategy, noting: </em></p>
<ul>
<li><em>Setting      up a virtual private network to link the phones to servers behind a      firewall proved challenging; several VPNs failed to work.</em></li>
<li><em>The      VPN communicates with the firewall and creates a secure tunnel using      encryption.</em></li>
<li><em>Both      the patient data and the home health application on the phones are      encrypted.</em></li>
<li><em>The      phones are password-protected, an essential step in case the devices are      lost.</em></li>
</ul>
<p><em>Jacksonville, Fla.-based American Hospice is the nation&#8217;s oldest hospice management company. It serves clients in five states. Cruz has 19 years of IT experience. He managed the installation of Allscripts Homecare software and VPN technology from NCP Engineering Inc.</em></p>
<p><strong>Podcast Options:</strong></p>
<p><a href="http://vpnhaus.files.wordpress.com/2010/08/icon-pc-download.gif"><img class="alignleft size-full wp-image-1286" title="icon-pc-download" src="http://vpnhaus.files.wordpress.com/2010/08/icon-pc-download.gif?w=15&#038;h=16" alt="" width="15" height="16" /></a> <a href="http://www.healthcareinfosecurity.com/processPodcastDownload.php?podcastID=660">Download MP3 File</a></p>
<p><a href="http://vpnhaus.files.wordpress.com/2010/08/icon-pc-listen.gif"><img class="alignleft size-full wp-image-1287" title="icon-pc-listen" src="http://vpnhaus.files.wordpress.com/2010/08/icon-pc-listen.gif?w=15&#038;h=16" alt="" width="15" height="16" /></a> <a href="http://www.healthcareinfosecurity.com/showPodcast.php?podcastID=660">Play Streaming Audio</a></p>
<div class="tweetmeme-button" id="tweetmeme-button-post-1300" style='float: right; margin-left: 10px; margin-bottom: 5px; padding: 4px 0 2px 4px; background: #fff;'>
<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fvpnhaus.ncp-e.com%2F2010%2F08%2F10%2Fpodcast-securing-mobile-devices-for-healthcare-organizations%2Ftweetmeme_alias%3Dhttp%3A%2F%2Fwp.me%2Fph0gY-kY%26tweetmeme_source%3D%E2%80%9Dvpnhaus%E2%80%9D"><img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fvpnhaus.ncp-e.com%2F2010%2F08%2F10%2Fpodcast-securing-mobile-devices-for-healthcare-organizations%2F" height="61" width="51" /></a>
</div>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/vpnhaus.wordpress.com/1300/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/vpnhaus.wordpress.com/1300/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/vpnhaus.wordpress.com/1300/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/vpnhaus.wordpress.com/1300/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/vpnhaus.wordpress.com/1300/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/vpnhaus.wordpress.com/1300/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/vpnhaus.wordpress.com/1300/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/vpnhaus.wordpress.com/1300/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/vpnhaus.wordpress.com/1300/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/vpnhaus.wordpress.com/1300/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/vpnhaus.wordpress.com/1300/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/vpnhaus.wordpress.com/1300/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/vpnhaus.wordpress.com/1300/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/vpnhaus.wordpress.com/1300/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=vpnhaus.ncp-e.com&blog=4052628&post=1300&subd=vpnhaus&ref=&feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://vpnhaus.ncp-e.com/2010/08/10/podcast-securing-mobile-devices-for-healthcare-organizations/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/d30ae0a99d7b481489730392ec6a2a96?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">vpnhaus</media:title>
		</media:content>

		<media:content url="http://vpnhaus.files.wordpress.com/2010/08/fred-cruz.jpg" medium="image">
			<media:title type="html">Fred Cruz</media:title>
		</media:content>

		<media:content url="http://vpnhaus.files.wordpress.com/2010/08/icon-pc-download.gif" medium="image">
			<media:title type="html">icon-pc-download</media:title>
		</media:content>

		<media:content url="http://vpnhaus.files.wordpress.com/2010/08/icon-pc-listen.gif" medium="image">
			<media:title type="html">icon-pc-listen</media:title>
		</media:content>
	</item>
		<item>
		<title>What We&#8217;re Reading&#8230;Week of 8/2</title>
		<link>http://vpnhaus.ncp-e.com/2010/08/06/what-were-reading-week-of-82/</link>
		<comments>http://vpnhaus.ncp-e.com/2010/08/06/what-were-reading-week-of-82/#comments</comments>
		<pubDate>Fri, 06 Aug 2010 15:59:02 +0000</pubDate>
		<dc:creator>vpnhaus</dc:creator>
				<category><![CDATA[Highlights]]></category>
		<category><![CDATA[healthcare]]></category>
		<category><![CDATA[mobile]]></category>
		<category><![CDATA[healthcare IT]]></category>
		<category><![CDATA[mhealth]]></category>
		<category><![CDATA[emr]]></category>

		<guid isPermaLink="false">http://vpnhaus.ncp-e.com/?p=1295</guid>
		<description><![CDATA[BusinessWeek, Mobile Health Requires Grasping Smartphone User Connection Computerworld, State CIOs Focus on Updating IT for National Healthcare MobiHealthNews, Clinton: mHealth Offers Unprecedented Access PCWorld, Smartphones, Tablets Seen Boosting Mobile Health Care The Huffington Post, Electronic Medical Records: Privacy Risks and Opportunities<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=vpnhaus.ncp-e.com&blog=4052628&post=1295&subd=vpnhaus&ref=&feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><em>BusinessWeek</em>, <a href="http://www.businessweek.com/idg/2010-07-30/mobile-health-requires-grasping-smartphone-user-connection.html">Mobile Health Requires Grasping Smartphone User Connection</a></p>
<p><em>Computerworld</em>, <a href="http://www.computerworld.com/s/article/9180040/State_CIOs_focus_on_updating_IT_for_national_healthcare">State CIOs Focus on Updating IT for National Healthcare</a></p>
<p><em>MobiHealthNews</em>, <a href="http://mobihealthnews.com/8558/clinton-mhealth-offers-unprecedented-access/">Clinton: mHealth Offers Unprecedented Access </a></p>
<p><em>PCWorld</em>, <a href="http://www.pcworld.com/businesscenter/article/202224/smartphones_tablets_seen_boosting_mobile_health.html">Smartphones, Tablets Seen Boosting Mobile Health Care</a></p>
<p><em>The Huffington Post</em>, <a href="http://www.huffingtonpost.com/marty-robins/electronic-medical-record_b_667990.html">Electronic Medical Records: Privacy Risks and Opportunities </a></p>
<div class="tweetmeme-button" id="tweetmeme-button-post-1295" style='float: right; margin-left: 10px; margin-bottom: 5px; padding: 4px 0 2px 4px; background: #fff;'>
<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fvpnhaus.ncp-e.com%2F2010%2F08%2F06%2Fwhat-were-reading-week-of-82%2Ftweetmeme_alias%3Dhttp%3A%2F%2Fwp.me%2Fph0gY-kT%26tweetmeme_source%3D%E2%80%9Dvpnhaus%E2%80%9D"><img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fvpnhaus.ncp-e.com%2F2010%2F08%2F06%2Fwhat-were-reading-week-of-82%2F" height="61" width="51" /></a>
</div>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/vpnhaus.wordpress.com/1295/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/vpnhaus.wordpress.com/1295/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/vpnhaus.wordpress.com/1295/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/vpnhaus.wordpress.com/1295/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/vpnhaus.wordpress.com/1295/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/vpnhaus.wordpress.com/1295/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/vpnhaus.wordpress.com/1295/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/vpnhaus.wordpress.com/1295/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/vpnhaus.wordpress.com/1295/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/vpnhaus.wordpress.com/1295/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/vpnhaus.wordpress.com/1295/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/vpnhaus.wordpress.com/1295/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/vpnhaus.wordpress.com/1295/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/vpnhaus.wordpress.com/1295/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=vpnhaus.ncp-e.com&blog=4052628&post=1295&subd=vpnhaus&ref=&feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://vpnhaus.ncp-e.com/2010/08/06/what-were-reading-week-of-82/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/d30ae0a99d7b481489730392ec6a2a96?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">vpnhaus</media:title>
		</media:content>
	</item>
	</channel>
</rss>