You don't have to do anything to your firewall for Goto My PC to work.
In fact, that is basically their business model: they let users access
their work PCs without involvement from those pesky IT and security
Nazis. I'd be willing to bet that there are MANY companies out there who
have Goto My PC users and don't even know it!

How is this possible? The trick is that their software opens an HTTP
(HTTPS?) connection to the Goto My PC servers. To your firewall, it just
looks like normal web traffic. 

To their credit, they have a section on their web site on how to block
access to their service (which we have done).

-----Original Message-----
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of Kern, Tom
Sent: Tuesday, May 25, 2004 8:17 AM
To: [EMAIL PROTECTED]
Subject: [ActiveDir] go to my pc, revisted


i've posted before about this issue. a recap- my cio wants to give
himself and some mangers access to their office pc's via Go To My PC.
the attraction is no client to install and configure ala vpn or terminal
services. i'm trying to push remote desktop web services but he's not
bitting. he feels installing IIS and configuring it on the target pc is
just as much of a headache( i counter that thats why you have a salaried
IT staff and thats the price you pay for complete control). also, he
thinks IIS has had a history of vulnerablities whereas Go To My PC has
had none so far and is relaible.


also, on my side, don't i have to then set up Port address translation
on my firewall/router for this to work? the client would have to connect
via ip or i have to make a dns entry on my public dns server for
everyone who wants to connect to their office? i don't see that as a
good idea ethier. i guess i'm looking for some more info on go to my pc
and how it really works and why its a really bad idea(documentation or
techincal reasons) and why jumping thru hoops to get remote desktop web
is really worht it in comparison(disregarding vpn for the moment). and
finally, someone has stated on this list that the target pc can only run
on winxp but i see the activex control download for win2k and nt as
well.

Thanks and i apologize for bringing this up again, but i really HATE the
idea of Go To My Pc and outsourcing my security to some third party. I
just need some more ammo for my argument.
List info   : http://www.activedir.org/mail_list.htm
List FAQ    : http://www.activedir.org/list_faq.htm
List archive:
http://www.mail-archive.com/activedir%40mail.activedir.org/

List info   : http://www.activedir.org/mail_list.htm
List FAQ    : http://www.activedir.org/list_faq.htm
List archive: http://www.mail-archive.com/activedir%40mail.activedir.org/

Reply via email to