My advice to them? Don't obsess about it. There are some cases where you should be concerned about the physical...
By submitting your email address, you agree to receive emails regarding relevant topic offers from TechTarget and its partners. You can withdraw your consent at any time. Contact TechTarget at 275 Grove Street, Newton, MA.
security of your network, but at some point you're either going to have to trust an outside provider or run a cable through a secure area. In the case of this particular client, the risk seemed acceptable.
In the scenario you describe, an outside manhole shouldn't be a great concern. Once the traffic leaves your private network and enters the public Internet (which is of course where it goes once it leaves your building), none of the sensitive data should be sent without using encryption. Proper data encryption mitigates the risk of interception. There's no difference between someone climbing down a manhole and tapping your external connection and an eavesdropping hacker that compromises an intermediate router somewhere on the Internet.
Dig Deeper on SSL and TLS VPN Security
Related Q&A from Mike Chapple
Encrypting data going to the cloud is a security best practice, but does it add extra challenges for regulators that might need to access the data? ...continue reading
Merchants that sell at off-site venues need to take extra care to follow PCI compliance standards. Expert Mike Chapple discusses how organizations ...continue reading
The FTC's order for PCI DSS compliance assessments is odd since PCI isn't a government regulation. Expert Mike Chapple explains the motivation ...continue reading
Have a question for an expert?
Please add a title for your question
Get answers from a TechTarget expert on whatever's puzzling you.