Showing posts with label Security. Show all posts
Showing posts with label Security. Show all posts

We moved!

Find our new blog here: Cybele Software Blog

Visit our new corporate blog!

ThinVNC gets secure gateway for corporate remote sessions

ThinVNC Remote Access Server enables an HTML5 Remote Desktop access point to any PC within the corporate LAN/WAN, administering and redirecting ThinVNC’s HTTPS/WebSockets traffic. With the ability to define users and PCs, ThinVNC Remote Access Server is the perfect tool for secure telecommuting, remote support and administration.


Cybele Software, Inc. announces a final release of ThinVNC Remote Access Server, a tool that provides an access point for remote screen sessions. ThinVNC Remote Access Server, redirects ThinVNC’s HTTPS/Websockets traffic enabling secure access to any PC on the LAN through just one public IP address, using native, firewall-friendly protocols and ports.

ThinVNC Remote Access Server offers an easy-to-use web interface targeted to both administrators and end-users. After sign in with their credentials, administrators can manage end-users and assign PCs they can get access to. As a result, end-users are presented with a list of their authorized PCs, making them accessible with a click.

ThinVNC Remote Access Server requires a copy of ThinVNC running on each remote PC. To ease the installation task, ThinVNC Remote Access Server provides a Remote Install tool, enabling on-demand remote ThinVNC installation.

What if the target PC is turned off? ThinVNC Remote Access Server solves this very common obstacle for remote access. When the PC is off, end-users can remotely turn it on with a single click, sending a Wake-On-LAN packet over the network. This option makes it unnecessary to leave PCs permanently on, thus saving energy and helping to keep data privacy while the user is not sitting at desk.

ThinVNC Remote Access Server Highlights:
- Secure (SSL), Firewall-friendly Remote Desktop Access Point
- Web User Interface
- Users/PCs Administration
- Windows Logon Support
- Remote Install Tool
- Wake-On-Lan (WOL)

ThinVNC Remote Access Server can be installed on Windows 2000/XP/2003/Vista/Win 7/Windows Server 2008. On the client side, both tools are compatible with any Operating System and any HTML5-compliant Web Browser such as Mozilla Firefox, Google Chrome, Opera, Safari, etc.

For more information about ThinVNC and ThinVNC Remote Access Server, contact Cybele Software, Inc.
3422 Old Capitol Trail, Suite 1125, Wilmington, DE 19808 USA.
Phone: (302) 892-9625 or (866) 462-9768
Email: info@cybelesoft.com
Website: www.cybelesoft.com


###

Cybele Software, Inc. announces the release of ThinVNC Remote Access Server


ThinVNC Remote Access Server enables external HTML5 Remote Desktop Access to any PC within the corporate LAN/WAN, tunneling ThinVNC traffic over HTTP/WebSockets and SSL. With the ability to define users and PCs, ThinVNC Remote Access Server is the perfect tool for secure telecommuting, remote support and administration.

Cybele Software, Inc. announces a public beta release of ThinVNC Remote Access Server, a software solution to grant full-external HTML5 Remote Desktop Access to any PC within the LAN. ThinVNC Remote Access Server tunnels ThinVNC traffic over HTTP/WebSockets and SSL, enabling secure access to any PC through just one public IP, using firewall-friendly protocols and port.
ThinVNC Remote Access Server provides an easy-to-use web interface targeted to both administrators and end-users. Using ThinVNC Remote Access Server, administrators can manage users and assign the PCs they can gain access to. End-users simply see a list with their assigned PCs, making them possible the remote desktop access with a simple click. Furthermore, when the remote PC is off, end-users can remotely turn the PC on using the Wake-On-LAN feature, making unnecessary to leave all PC permanently on.
ThinVNC Remote Access Server requires a copy of ThinVNC running on each remote PC. To ease the installation task, ThinVNC Remote Access Server provides a Remote Install tool, enabling on-demand and remote ThinVNC installation.

ThinVNC Remote Access Server Highlights:

- Secure (SSL), Firewall-Friendly External Remote Desktop Access to every PC on the LAN
- ThinVNC traffic tunneling
- Pure-Web Access, HTML5 Based
- Users/PCs Administration
- Windows Logon Support
- Remote Install Tool
- Wake-On-Lan (WOL)

Whenever required, ThinVNC Remote Access Server grants remote access to every PC Desktop in the LAN/WAN:
· Home users or corporate employees can work remotely virtually from anywhere: with ThinVNC Remote Access Server, telecommuting only requires internet connection and a HTML5 capable browser. Severe weather condition, traffic jams and business trips are no longer an obstacle to get the work done.
· Sharing the full Windows Desktop or a single application with someone outside the LAN can become an impossible mission: security rules and firewall settings usually do not support them. ThinVNC Remote Access Server provides secure, but still firewall-friendly tools to invite a customer to see a presentation or allow a colleague to join in a collaboration session.
· IT personnel often requires to solve typical issues like changing printer settings, removing virus and installing driver updates remotely: ThinVNC Remote Access Server guarantees the remote desktop access to any PC on the network even if the PC is off.
· With the use of ThinVNC Remote Access Server, highly delicate servers and databases can be securely managed without delay. Either on regular basis maintenance or during an emergency, the remote access to a corporate Windows 2003 Server, for instance, makes possible to System and Network Administrators to perform any required duty with efficiency.
ThinVNC Remote Access Server can be installed on Windows 2000/XP/2003/Vista/Win 7/Windows Server 2008. On the client side, ThinVNC is compatible with any Operating System and any HTML5-compliant Web Browser such as Mozilla Firefox, Google Chrome, Opera, Safari, etc.

Remote Access: TCP Port Vulnerabilities Now Superseded.

The practice of remote access can result in exposure to multiple security threats if approached superficially. Inaccurate information about the many factors involved in the process of two computers communicating can be misleading. And ignoring the exact functioning of your software can result in unwanted security issues.

Remote access software that performs a direct connection between the supporter and the client forces either of them to acts as a host and to consequently be subject to unnecessary exposure.

Let’s analyze the facts: every time an application performs a communication between two computers, it will necessarily involve two TCP Ports. One of the ends opens an incoming TCP port to act as a host to which the other PC will connect. While an outgoing connection poses no significant threat, an open incoming TCP port translates into an instant weakness. An open port in your computer is like an unlocked window or door in your home.

Risks derivable from an open TCP port include enabling access for malicious software to act as a service and communicate with a remote attacker. Also port scanning software is used to find open or unfiltered ports. Attackers can then exploit potential vulnerabilities in any services they find.

SupportSmith IT Support works by connecting both ends of the communication through outgoing connections to a server machine, which handles the communication between both. This way neither users nor technicians need compromising their security. And because it’s deployed in the company’s own secure infrastructure, it doesn’t need to rely on third party security policies.

The structure of SupportSmith IT Support not only renders the preoccupation about the hazards of TCP connections anachronistic, but also employs SSH/2 and 128-bit encryption. In this way it attends to the communications scenario ensuring maximum commitment with each phase of the process.

Need Secure Remote Desktop Access software? Contact us. We have a solution for you.



















How to protect end-user privacy on a remote support session

Most of the available remote support tools address the concept of security from the standpoint of communications and end-users’ computer access. But in a corporate scenario, one more issue must be attended: end-user’s privacy. What if the technician accesses the user’s desktop while they are working on sensitive, confidential data that shouldn’t be available for regular employees?

A typical approach for ensuring end user’s privacy consists on a single prompt for denial/authorization of the access request. However, this one-time verification does not suffice for all the possible remote activities, individuals and scenarios.

With SupportSmith IT Support, we have made sure that the spectrum of situations involving different privacy levels will be handled properly. When dealing with particular situations, IT Managers can now apply specific permission rules for each User / Group.

For instance, the personnel who handle very delicate information need a high privacy level. Does this mean that these users should not be remotely assisted? Not at all. They can be remotely assisted in a secure way through SupportSmith IT Support. Consider these possible settings:
  • Shared Desktop Access Request with prompt. Access denial upon timeout expiration. This setting ensures that the technician won’t get access to the remote user’s desktop unless granted by their response. Whether the remote user denies the request or doesn’t respond (probably because they are away), technician access is denied.
Depending on whether the support session can run unattended or not, two more possibilities are available:
  • Exclusive Desktop Access Request with prompt. Access allowance upon timeout expiration 
    Because technicians are aware of the user logon state (through the SupportSmith Support Manager), they can initiate the remote support session and ask for exclusive desktop access when the user is logged off. Also, in the event of the user still logged on, they will be prompted to grant or deny the exclusive desktop control request. In any case, as the remote control takes place in another Windows session, there’s no possibility of seeing the remote user’s desktop content.
  • Exclusive Desktop Access request always denied. If the remote user wishes to always supervise the support session, the exclusive control option can be disabled. This way, only shared desktop access can be requested.
Additionally, end-users can manually restrict access to their own PC by establishing a user-defined password for remote access or requiring Windows’ log on credentials.

This small example illustrates how different privacy rules can be quickly set to different user groups with as much detail as any company concerned with security and effectiveness will need.


Need Secure Remote Desktop Access software? Contact us. We have a solution for you.