Hi Guys,<\/p>\n
Coming to the community to see if anyone was ever in a similar situation or has any good ideas for what is happening in my current situation.<\/p>\n
Right now we are having discussions about allowing employees to install our VPN client on their personal home machines so that they can VPN in and then RDP to their desktops here in the office. I am completely against it because if these users don’t run anti-virus on their laptops we run a huge risk of our company getting infected.<\/p>\n
That being said I have been throwing around the idea of getting users all company issued/managed laptops or potentially look into VDI ($$$$).<\/p>\n
What is everyone’s take on this and any suggestions on this odd situation i have in my hands.<\/p>","upvoteCount":3,"answerCount":10,"datePublished":"2018-05-09T12:34:19.000Z","author":{"@type":"Person","name":"kylecabral6633","url":"https://community.spiceworks.com/u/kylecabral6633"},"suggestedAnswer":[{"@type":"Answer","text":"
Hi Guys,<\/p>\n
Coming to the community to see if anyone was ever in a similar situation or has any good ideas for what is happening in my current situation.<\/p>\n
Right now we are having discussions about allowing employees to install our VPN client on their personal home machines so that they can VPN in and then RDP to their desktops here in the office. I am completely against it because if these users don’t run anti-virus on their laptops we run a huge risk of our company getting infected.<\/p>\n
That being said I have been throwing around the idea of getting users all company issued/managed laptops or potentially look into VDI ($$$$).<\/p>\n
What is everyone’s take on this and any suggestions on this odd situation i have in my hands.<\/p>","upvoteCount":3,"datePublished":"2018-05-09T12:34:19.000Z","url":"https://community.spiceworks.com/t/vpn-on-personal-machines/650605/1","author":{"@type":"Person","name":"kylecabral6633","url":"https://community.spiceworks.com/u/kylecabral6633"}},{"@type":"Answer","text":"
Do not let users install VPN on personal Machines! You are totally correct in your fears. VDI or Managed laptops is the best you can do here for your company.<\/p>","upvoteCount":3,"datePublished":"2018-05-09T13:03:26.000Z","url":"https://community.spiceworks.com/t/vpn-on-personal-machines/650605/2","author":{"@type":"Person","name":"jimjohnson9","url":"https://community.spiceworks.com/u/jimjohnson9"}},{"@type":"Answer","text":"
I know on some VPN solutions you can enforce a device policy and list the acceptable antivirus programs, require realtime protection, set number of days since the last signature update and file scan . I know on Sonicwall VPN appliances will do this. https://www.sonicwall.com/en-us/products/remote-access/remote-access-appliances<\/a><\/p>","upvoteCount":2,"datePublished":"2018-05-09T13:12:55.000Z","url":"https://community.spiceworks.com/t/vpn-on-personal-machines/650605/3","author":{"@type":"Person","name":"chad3134","url":"https://community.spiceworks.com/u/chad3134"}},{"@type":"Answer","text":" If they need access externally give them the proper equipment, ie company laptop and drop the PC<\/p>","upvoteCount":2,"datePublished":"2018-05-09T13:19:46.000Z","url":"https://community.spiceworks.com/t/vpn-on-personal-machines/650605/4","author":{"@type":"Person","name":"maxsec","url":"https://community.spiceworks.com/u/maxsec"}},{"@type":"Answer","text":" Ultimately you will need to yield to corporate policy. The question is why are they doing work from home when off duty? If they are not off duty VDI or laptop would be the better way to go. You have no control over software that is installed on their personal machine or what data could be stored there.<\/p>","upvoteCount":1,"datePublished":"2018-05-09T13:22:18.000Z","url":"https://community.spiceworks.com/t/vpn-on-personal-machines/650605/5","author":{"@type":"Person","name":"matthewmoore3152","url":"https://community.spiceworks.com/u/matthewmoore3152"}},{"@type":"Answer","text":" Many users work from home off hours just to check up on emails and other tasks. This also relates for when their is a snow day and users must work from home.<\/p>","upvoteCount":0,"datePublished":"2018-05-09T13:42:43.000Z","url":"https://community.spiceworks.com/t/vpn-on-personal-machines/650605/6","author":{"@type":"Person","name":"kylecabral6633","url":"https://community.spiceworks.com/u/kylecabral6633"}},{"@type":"Answer","text":" Why not just install the remote desktop gateway on a windows server, they can rdp into their machines through that. You will need to get a certificate though and teach them how to configure the client on their home machines.<\/p>","upvoteCount":0,"datePublished":"2018-05-09T14:02:36.000Z","url":"https://community.spiceworks.com/t/vpn-on-personal-machines/650605/7","author":{"@type":"Person","name":"seanmabin7009","url":"https://community.spiceworks.com/u/seanmabin7009"}},{"@type":"Answer","text":"