08:13:10
REMOTE ACCESS POLICY
I.
Purpose
The
purpose of this policy is to provide guidelines for Remote Access Virtual
Private Network (VPN) connections to the Pellissippi state campus network.
II.
Scope
This policy
applies to all
III. Policy
Approved
Additionally,
A.
It is the responsibility of employees with VPN privileges to ensure that unauthorized users
are not allowed access to
B. VPN use is to be controlled using a username/password authentication from the Pellissippi State Active Directory.
C. When actively connected to the campus network, VPNs will force all traffic to and from the PC over the VPN connection.
D. Dual (split) tunneling is NOT permitted; only one network connection is allowed for users accessing college resources.
E.
All
computers connected to
F. VPN users will be automatically
disconnected from
G. The VPN concentrator is limited to total connection time of 8 hours per session.
H.
Users
of computers that are not Pellissippi State-owned equipment must configure the
equipment to comply with
I. Only College-supplied VPN or SSL VPN clients may be used.
J.
By
using VPN technology with personal equipment, users must understand that their
machines are a de facto extension of
K.
At no
time should any
L.
M. Reconfiguration of a home user’s equipment for the purpose of split-tunneling or dual homing is not permitted at any time.
II.
Enforcement
Any
employee found to have violated this policy may be subject to disciplinary
action, including loss of remote access privileges.
III.
Definitions
|
Term |
Definition |
|
VPN |
Virtual Private Network, a method for accessing
a remote network via tunneling through the internet. |
|
Remote Access |
Any access to |
|
Split-tunneling |
Simultaneous direct access to a |
|
Dual |
Having concurrent connectivity to more than
one network from a computer or network device. Examples include: Being logged into the
College network via a local Ethernet connection, and dialing into AOL or
other Internet service provider (ISP).
Being on a Pellissippi State-provided Remote Access home network, and
connecting to another network, such as a spouse's remote access. Configuring an ISDN router to dial into |
Reviewed/Recommended: President’s Staff, March 26, 2007
Approved: President Allen G. Edwards, March 26, 2007