Laserfiche WebLink
16 Policy and Procedures <br />Remote Network Access —June 1, 2012 <br />This policy applies to all employees, contractors, vendors and agents that connect to the City <br />servers, applications or other network attached resources. This policy applies to remote access <br />connections used to do work on behalf of the City, including but not limited to, file and print <br />access, applications, and Intranet use. Remote access implementations that are covered by this <br />Policy include, but are not limited to, dial -in modems, DSL,, VPN, SSII, and cable modems, etc. <br />Policy <br />It is the responsibility of City employees, authorized third party contractors, vendors and agents <br />with remote network access privileges to the City network to ensure that their remote access <br />connection is given the same consideration as the user's on-site connection to the City network. <br />Remote access will be granted only with the approval of the requester's supervisor and/or the <br />Information Technology Department Network Manager or in the case of a third party contractor, <br />by contractual agreement. VPN is a "user managed" service. This means that the user is <br />responsible for selecting an Internet Service Provider (ISP), coordinating installation, installing <br />any required software, and paying associated connection fees. <br />Additionally, <br />•3 VPN access is provided through the Information Technology (IT) Department. No <br />other department may implement VPN services. <br />❖ Only the VPN client software distributed by IT may be used. <br />❖ VPN account names and passwords will be assigned by an IT network administrator <br />or authorized delegate. <br />•S VPN access requires two -factor authentication using the established methods <br />approved by the IT Department. <br />❖ The authorized user, or their department, is required to reimburse the ff Department <br />for any licensing associated with the VPN client and/or authentication software. <br />❖ Only current Microsoft Windows platforms are supported. Additional operating <br />systems and platforms may be supported on a case-by-case basis but it cannot be <br />assumed that support will automatically be extended to non -Windows platforms. <br />❖ Only city -owned (domain managed) computers will be allowed to access the network <br />over a VPN connection. Personally owned computers are prohibited from directly <br />access network file shares and printers. <br />B• All network activity during a VPN session is subject to city computer use policies and <br />may be monitored for compliance. <br />❖ To mitigate perceived or discovered threats to the network, VPN access to the city <br />network and systems may be disabled at any time without advanced notification to <br />remote access users. Active sessions may also be disconnected without prior warning. <br />❖ All computers connected to the City network via VPN or any other technology must <br />use the most up-to-date anti-virus software that meets or exceeds the corporate <br />12 <br />