[THIN] worst case scenario

  • From: "Wilson, Christopher" <CMWilson@xxxxxxxxxxxxx>
  • To: <thin@xxxxxxxxxxxxx>
  • Date: Tue, 25 Aug 2009 10:00:01 -0500

On the security topic still...

 

What is the worst compromise you've seen of a Citrix environment?   I've
never seen one personally.  

 

I remember back in the day before CSG etc, we would open 1494 from the
outside to our internal Citrix servers.  Citrix used to claim this
wasn't much of an attack vector, but eventually we got CSG and that made
it more secure and easier traverse other people's firewalls.  I'll stop
there, I know there are other measures to secure this traffic, but I'm
wondering how much risk are we really talking about with Citrix XenApp?
What's the worst thing you've ever seen?  I'm trying to get a real sense
of the risk we need to manage with security measures.

Other related posts: