{"id":48688,"date":"2024-04-12T14:42:37","date_gmt":"2024-04-12T12:42:37","guid":{"rendered":"https:\/\/www.usd.de\/?p=48688"},"modified":"2024-04-12T14:42:41","modified_gmt":"2024-04-12T12:42:41","slug":"usd-orangebox-makes-preparing-for-remote-pentests-easy","status":"publish","type":"post","link":"https:\/\/www.usd.de\/en\/usd-orangebox-makes-preparing-for-remote-pentests-easy\/","title":{"rendered":"Connect and Go: The usd OrangeBox Makes Preparing for Remote Pentests Easy"},"content":{"rendered":"\n<p>A penetration test or <a href=\"https:\/\/www.usd.de\/en\/pentest\/\">pentest <\/a>provides answers to the question of whether attackers can penetrate your IT infrastructure. There are two ways in which our security analysts can carry out a pentest of your systems and applications: on site or remotely.<\/p>\n\n\n\n<p>Remote access is particularly suitable if the IP addresses to be tested are accessible from the internet, which is the case for websites or online stores, for example. Systems and applications that are not accessible from the Internet have traditionally been tested directly on your premises. However, the presence of our analysts on site is often neither necessary nor the most efficient and practical solution for carrying out a pentest. A remote pentest, for example with the usd OrangeBox, can cover the same attack scenarios and the same scope of testing as an on-site pentest.<\/p>\n\n\n\n<p><\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Preparation for remote pentests<\/h2>\n\n\n\n<p>We have been offering you the option of setting up a secure connection between the usd <a href=\"https:\/\/herolab.usd.de\/en\/\" target=\"_blank\" rel=\"noopener\">HeroLab<\/a>'s high-security network and your network to be tested via site-to-site VPN for years. However, setting up site-to-site VPN connections requires appropriate specialist personnel and time expenditure on your part.<\/p>\n\n\n\n<p>The experts at usd HeroLabs have developed the usd OrangeBox to make setting up a secure connection easier and more resource-efficient for you.<\/p>\n\n\n\n<div class=\"wp-block-columns is-layout-flex wp-container-core-columns-is-layout-9d6595d7 wp-block-columns-is-layout-flex\">\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\" style=\"flex-basis:66.66%\">\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\">\n<p>The usd OrangeBox is a wonderful addition to existing remote pentesting procedures. It enables the simple and easy establishment of secure site-to-site connections for pentesting with usd.<\/p>\n<cite>Markus Ritter, Managing Security Consultant, usd HeroLab<\/cite><\/blockquote>\n<\/div>\n\n\n\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\" style=\"flex-basis:33.33%\">\n<figure class=\"wp-block-image size-full is-resized\"><img loading=\"lazy\" decoding=\"async\" width=\"384\" height=\"384\" src=\"https:\/\/www.usd.de\/wp-content\/uploads\/vulnerability-management-zitat-mr.jpg\" alt=\"\" class=\"wp-image-28456\" style=\"width:150px\" \/><\/figure>\n<\/div>\n<\/div>\n\n\n\n<p><\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Secure connection via the usd OrangeBox<\/h2>\n\n\n\n<p>The usd OrangeBox enables remote pentesting of systems and applications in internal networks with a high level of security and efficiency. It is based on highly reliable and open technologies and works on a VPN basis. The encryption methods used comply with the recommendations of the German Federal Office for Information Security (BSI). Dedicated firewalls and strict authorizations ensure that only those security analysts who are actively involved in carrying out your pentest have access to the connected networks. In this way, the OrangeBox automatically enables a secure connection between your network and the usd HeroLab's high-security network.<\/p>\n\n\n\n<p><\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Setting up the usd OrangeBox<\/h2>\n\n\n\n<p><\/p>\n\n\n\n<div class=\"wp-block-columns is-layout-flex wp-container-core-columns-is-layout-9d6595d7 wp-block-columns-is-layout-flex\">\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\" style=\"flex-basis:25%\"><\/div>\n\n\n\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\" style=\"flex-basis:50%\">\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"870\" height=\"500\" src=\"https:\/\/www.usd.de\/wp-content\/uploads\/news-usd-remote-pentest-per-usd-orangebox.jpeg\" alt=\"usd OrangeBox as Hardware makes preparing for remote pentests easier\" class=\"wp-image-4339\" \/><figcaption class=\"wp-element-caption\">usd OrangeBox - Hardware<\/figcaption><\/figure>\n<\/div>\n\n\n\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\" style=\"flex-basis:25%\"><\/div>\n<\/div>\n\n\n\n<p>You will receive the usd OrangeBox from us electronically as a virtual machine or by post as hardware. Connect the OrangeBox to the network to be tested and make sure that it can establish an HTTPS connection (directly or via Internet proxy) to our network. Further access to the Internet or accessibility from the Internet is not required. If this condition is met and the usd OrangeBox has access to the systems to be tested, it automatically establishes an encrypted VPN connection to the usd HeroLab's high-security network. The usd OrangeBox can be placed in any network and can be adapted to your individual requirements at any time - be it the consideration of several locations or the connection to several networks. The VPN connection is terminated as soon as you remove the box from your network or shut down the virtual machine.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>A penetration test or pentest provides answers to the question of whether attackers can penetrate your IT infrastructure. There are two ways in which our security analysts can carry out a pentest of your systems and applications: on site or remotely. Remote access is particularly suitable if the IP addresses to be tested are accessible [&hellip;]<\/p>\n","protected":false},"author":91,"featured_media":48696,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_et_pb_use_builder":"off","_et_pb_old_content":"","_et_gb_content_width":"","inline_featured_image":false,"footnotes":""},"categories":[373,374],"tags":[378,488,489,490,491],"class_list":["post-48688","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news-en","category-pentests-security-analyses-en","tag-pentest-en","tag-pentest-vpn-en","tag-pentestbox-en","tag-remote-pentest-en","tag-usd-orangebox-en"],"_links":{"self":[{"href":"https:\/\/www.usd.de\/en\/wp-json\/wp\/v2\/posts\/48688","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.usd.de\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.usd.de\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.usd.de\/en\/wp-json\/wp\/v2\/users\/91"}],"replies":[{"embeddable":true,"href":"https:\/\/www.usd.de\/en\/wp-json\/wp\/v2\/comments?post=48688"}],"version-history":[{"count":5,"href":"https:\/\/www.usd.de\/en\/wp-json\/wp\/v2\/posts\/48688\/revisions"}],"predecessor-version":[{"id":48704,"href":"https:\/\/www.usd.de\/en\/wp-json\/wp\/v2\/posts\/48688\/revisions\/48704"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.usd.de\/en\/wp-json\/wp\/v2\/media\/48696"}],"wp:attachment":[{"href":"https:\/\/www.usd.de\/en\/wp-json\/wp\/v2\/media?parent=48688"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.usd.de\/en\/wp-json\/wp\/v2\/categories?post=48688"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.usd.de\/en\/wp-json\/wp\/v2\/tags?post=48688"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}