marcocheng_5768
Jun 29, 2011Nimbostratus
Firepass Application Tunnel in a shared Terminal Server Environment
Hi All,
Recently I've tested using Firepass application tunnel with users logged in to a Windows Terminal Server. I found that when the application tunnel established, the TunnelServer.exe create listens on a local loopback address (127.x.x.x) for individual application tunnel. The address is in random.
At the same time, I found that an "Unauthenticated" user who are logged in to the same Terminal Server can gain access to the application tunnel without ANY authentication process, just by connecting to the loopback address created.
It seems the design of application tunnel have this security loophole when using in a shared terminal server environment. I try to figure out how to deal with this situation. Any suggestions?
Thanks a lot.