Hi,

You could create a little separate LAN for them  : 

DSL Router --- Firewall (Linux based, on a recup PC) --- TEST LAN 

If the goal is to test the end-user experience, they will probably ask for different 
OS..  So Why not think about making a little private LAN with Linux, Windows,(Dual 
Boot/VMWare??).  Just imagine..  I had this kind of requirement for a Web developping 
Company, and this is what we did.  We knew that the developpers were  not specially 
Security-Minded, and the Boss was paranoid...

At a first stage, there was NO connection at all with the production LAN, which is the 
safest solution ..  But as they needed to exchange some file , we connected both LAN 
via a Firewall, allowing ONLY FTP traffic from Production LAN to Test LAN, using a FTP 
proxy and a Virus Checking (Trend Micro Viruswall..)=
So DEV team can work as usual on the Prod LAN,.  want they to test their finding?  
Just moving to an other keyboard... without jeopardysing the prod LAN Security... 

Hope this help..
Should you need more details about the config, just drop me a mail Off list @ 
[EMAIL PROTECTED]

Regards,


MAx

-----Original Message-----
From: Chris Hylen [mailto:[EMAIL PROTECTED]] 
Sent: mercredi 9 octobre 2002 17:32
To: [EMAIL PROTECTED]
Cc: [EMAIL PROTECTED]
Subject: Allow second Internet connection into Office Space?


Security Pro's:

        A group of my programmers want to have a DSL connection put in their testing 
area so they can simulate end user experience across the Internet. I have concerns 
with this and am curious if anyone else has found a good solution to provision their 
business requirement without putting the network at risk.

        I know I haven't gone in to enough detail for an EXACT solution but in general 
if anyone has any "tips" I'd appreciate it. Thanks!

Chris Hylen
Data Security

Reply via email to