Mistake Not...

| Maybe I missed something. If your wife is working from home according to a company policy, why do you need to buy a firewall? Why doesn't the company buy a firewall that it wants it's employees to use? Even if your wife is optioning to work from home as an alternative to the office, why would the company have a non-standard firewall policy?
___________________________________________ Life Member NRA & Washington Arms Collectors
Mistake not my current state of joshing gentle peevishness for the awesome and terrible majesty of the towering seas of ire that are themselves the milquetoast shallows fringing my vast oceans of wrath.
Velocitas Incursio Vis - Gandhi
|
| Posts: 2152 | Location: T-town in the 253 | Registered: January 16, 2013 |  
IP
|
|
W07VH5

| quote: Originally posted by Loswsmith: Maybe I missed something. If your wife is working from home according to a company policy, why do you need to buy a firewall? Why doesn't the company buy a firewall that it wants it's employees to use?
Even if your wife is optioning to work from home as an alternative to the office, why would the company have a non-standard firewall policy?
I don't have answers for those questions. I can ask when she gets home. I think they asked those that were opting to work from home if they do have firewalls. quote: Originally posted by HRK: Agree with LS,, she should tell them ok and to send one to her and you'll install it, with IT's help.
It will greatly benefit everyone here if she's able to work from home so I'm willing to help. I don't think it's a requirement but it is highly suggested. I don't mind picking up a Ubiquiti firewall box for $100 and it would benefit the household, too. It can also be considered a business expense, right? |
| Posts: 45808 | Location: Pennsyltucky | Registered: December 05, 2001 |  
IP
|
|
Member

| It will do the same thing your router/firewall does. Ignore connection requests initiated from outside the FW. Unless the company plans on providing a FW ruleset that will allow connection requests from their FW, it's pointless. The company would be better off providing a vpn client if they're worried about it.
Hedley Lamarr: Wait, wait, wait. I'm unarmed. Bart: Alright, we'll settle this like men, with our fists. Hedley Lamarr: Sorry, I just remembered . . . I am armed. |
| |
Thank you Very little

| quote: It will greatly benefit everyone here if she's able to work from home so I'm willing to help. I don't think it's a requirement but it is highly suggested. I don't mind picking up a Ubiquiti firewall box for $100 and it would benefit the household, too.
If you are saying she's asking to work from home and corporate is saying a FW is required, as part of the conditions then maybe that's different. Still should ask if they have one in inventory she can use that they configure to meet their specs for security. I say that because you want no liability for any unauthorized access to be your fault for not having the proper setup/FW... At least have them send her the specs. |
| Posts: 25001 | Location: Gunshine State | Registered: November 07, 2008 |  
IP
|
|
Mistake Not...

| The paying really isn't the issue I see. Working from home has lots of ancillary benefits and its okay to have some costs placed on the worker. BUT, if the company REALY NEEDS this firewall, apparently for security, I would really want to know what your liability is if the security they want you to provide at your expense proves insufficient down the road.
___________________________________________ Life Member NRA & Washington Arms Collectors
Mistake not my current state of joshing gentle peevishness for the awesome and terrible majesty of the towering seas of ire that are themselves the milquetoast shallows fringing my vast oceans of wrath.
Velocitas Incursio Vis - Gandhi
|
| Posts: 2152 | Location: T-town in the 253 | Registered: January 16, 2013 |  
IP
|
|
W07VH5

| quote: Originally posted by Shaql: ... The company would be better off providing a vpn client if they're worried about it.
I believe they do have all their off-site connections through VPN. However, there is another part of the work that requires web searches and looking up codes. Maybe that's what they're concerned about. |
| Posts: 45808 | Location: Pennsyltucky | Registered: December 05, 2001 |  
IP
|
|
W07VH5

| quote: Originally posted by HRK: If you are saying she's asking to work from home and corporate is saying a FW is required, as part of the conditions then maybe that's different. Still should ask if they have one in inventory she can use that they configure to meet their specs for security.
I say that because you want no liability for any unauthorized access to be your fault for not having the proper setup/FW...
At least have them send her the specs.
It's an excellent point. Thank you. quote: Originally posted by Loswsmith: The paying really isn't the issue I see. Working from home has lots of ancillary benefits and its okay to have some costs placed on the worker.
BUT, if the company REALY NEEDS this firewall, apparently for security, I would really want to know what your liability is if the security they want you to provide at your expense proves insufficient down the road.
Yes, excellent point. Thanks! |
| Posts: 45808 | Location: Pennsyltucky | Registered: December 05, 2001 |  
IP
|
|
W07VH5

| quote: Originally posted by Aeteocles: ... My Asus router has AiProtection Network Security powered by Trend Micro built in--which is literally what the above does--but is lifetime subscription free. ...
That's what my router uses as well. |
| Posts: 45808 | Location: Pennsyltucky | Registered: December 05, 2001 |  
IP
|
|
eh-TEE-oh-clez

| If it's just a "suggestion", then I would just roll with the AiProtection built into your router. I don't think a hardware firewall is going to provide any benefit, especially if it's not a managed firewall that's being managed by the company.
Most companies, if they deploy mobile workstations or laptops to employees, would manage the VPN, anti-virus, and software firewall as part of a company wide security policy. CISCO AnyConnect is a popular suite of mobility security, for instance. Having individual employees buy hardware firewalls seems like a messy way to do it--simply having a firewall won't help if the individual employee allows malicious connections through unwittingly. A managed solution prevents that.
If this is all in response to some policy document a lawyer drafted as a CYA, then I would just rely on the strict reading of the document and say that your firewall existing on your router is indeed a hardware firewall separate and apart from your computer and the computer's software firewalls. |
| Posts: 13069 | Location: Orange County, California | Registered: May 19, 2002 |  
IP
|
|
W07VH5

| quote: Originally posted by Aeteocles: If it's just a "suggestion", then I would just roll with the AiProtection built into your router. I don't think a hardware firewall is going to provide any benefit, especially if it's not a managed firewall that's being managed by the company.
Most companies, if they deploy mobile workstations or laptops to employees, would manage the VPN, anti-virus, and software firewall as part of a company wide security policy. CISCO AnyConnect is a popular suite of mobility security, for instance. Having individual employees buy hardware firewalls seems like a messy way to do it--simply having a firewall won't help if the individual employee allows malicious connections through unwittingly. A managed solution prevents that.
If this is all in response to some policy document a lawyer drafted as a CYA, then I would just rely on the strict reading of the document and say that your firewall existing on your router is indeed a hardware firewall separate and apart from your computer and the computer's software firewalls.
Thanks. I'll get the details soon but that sounds like what is happening. A meeting that could have been an email occurred and someone needed to sound important, I think.  |
| Posts: 45808 | Location: Pennsyltucky | Registered: December 05, 2001 |  
IP
|
|
Member

| If you really need an external firewall , I'd recommend either sophos , or pfsense. Both are free for home use , and you simple load them on an old pc or similar. Sophos is more utm , and does a lot of extra , although adsense can use add ins to also extend functionality. So if you have a spare pc this is cheapest , most robust option. You could also run either as a vm , assuming that machine has capacity
. |
| Posts: 838 | Location: Central Texas | Registered: November 19, 2006 |  
IP
|
|
Member
| If work requires a firewall, I'd expect IT from work to provide it and support it. As others have mentioned, providing a VPN connection is much more common. It might be good to contact work's IT group directly and see what they say. |
| |
W07VH5

| quote: Originally posted by btgoanna: If you really need an external firewall , I'd recommend either sophos , or pfsense. Both are free for home use , and you simple load them on an old pc or similar. Sophos is more utm , and does a lot of extra , although adsense can use add ins to also extend functionality.
So if you have a spare pc this is cheapest , most robust option.
You could also run either as a vm , assuming that machine has capacity
Ah, pfsense is the name I was trying to remember. I do have VM capability. The requirement is we have something, the external one is a recommendation. The router is fine but I may just experiment with pfsense. |
| Posts: 45808 | Location: Pennsyltucky | Registered: December 05, 2001 |  
IP
|
|