How are fellow MSPs leveraging multiple tools to get a Remote Set-up for clients

How are fellow MSPs leveraging multiple tools to get a Remote Set-up for clients

The advent of COVID-19 has paved the way for multiple requests to help your clients with remote work setup. It is never as easy as it sounds! With numerous problems starting from endpoint security, lack of remote work infrastructure, you must already be wondering about questions like do I secure a VPN or go for a solution like Splashtop. Does each employee get a device, or should I only support BYOD? Here are a few common points on how you can go about securing a safe WFH setup without losing focus on what's essential, as done by fellow MSPs.

‍

VPN setup

‍

Hardware VPNs set up by far come across as the right solution for users with existing assets. That being said, you'll find that a software VPN typically has better pricing, and that access is a little easier to configure for your customers.

‍

But before you can start, you need to be asking yourself some questions:

‍

  • What does each of my customer environments entail?
  • Are the assets on the cloud? 
  • Are those cloud assets already tied with some gateway or VPN to an on-premise?
  • Do I have to provide hosting, or is everything on-premise?

‍

Popular choices for VPN

‍

  1. OpenVPN
  2. Surfshark
  3. IPVanish
  4. CyberGhost.

    

Choosing the correct VPN server is exceptionally pertinent, as you need to determine where you will put your VPN server. Though most popular solutions dictate that it be placed where whatever network accesses the VPN server as that's where the client connects. It is much safer building your server in a cloud environment where you can scale performance up or down without needing to worry about hosting & network complications. Your VPN server won't require much processing power, but you need to be flexible with that for events where you will see a spike in usage.

‍

Note: However, it is warned that OpenVPN, while free, doesn't have the most user-intuitive GUI.

‍

Using Cisco's Duo for 2-factor security 

‍

If you are using LDAP like most MSPs - probably Active Directory, setting up LDAP will make life easier for your customers so they can use existing credentials. If you want to get more robust, you can dual-home the network of your VPN server and assign different network groups based on AD groups for organizations that may require access segregation. 

‍

Microsoft free E365 for teams

‍

With Microsoft's free six-month license, this software has become so popular that in the very first week, it crashed in Europe. However, it remains a very convenient solution to be taken advantage of in setting up for small clients.

‍

However, it is observed that the groups and naming schemes, when not clearly defined, may find it become too "crowded" with multiple groups in similar names. Though it's debated on whether it's a network issue or a usage issue, you can (and should) implement naming policies and expiration policies for O365 groups, and therefore teams.

‍

The naming policies allow you to dictate a prefix or suffix for the name, such as a location or department. Additionally, you can configure blocked words, such as "credit cards," or "employee SSNs" or something silly.

‍

The Expiration Policies will self-police groups into being removed if they aren't actively used. Team owners will have plenty of notification to renew the group if they feel it is still relevant, otherwise they will be soft-deleted for 30 days before being completely removed (admin configurable retention).

‍

It is safer only to put in place hierarchical access in the organization that abides by the guidelines you implement.

‍

Firewall options 

‍

OPNsense firewall seems to be a popular choice, as it's regarded to be secure, and the administrator is only limited by the hardware you install it on. Since about any desktop or server CPU in the last nine years has AES-NI hardware acceleration, it doesn't take much equipment. If you want to keep your current firewall, it is also possible to configure PFsense as just an OpenVPN server or install OpenVPN on your favorite Linux distro. OpenVPN looks like https traffic, so you can even load-balance it behind Nginx if you need more than one server to handle the load.

‍

Setting up Azure platform 

 

Microsoft's Azure is firmly catching up on the cloud-platforms market over AWS. The primary advantage being how it can be up and running in a matter of ten minutes! First, you create a directory, then add users. It can have Linux or Windows of various sizes and can bring your licenses.

‍

Quick-fix solutions to get a remote office running

‍

Ensure all helpdesk and techs have a laptop and headset that stays at home and is ready to use in case the building gets closed down.

‍

Make sure your phones are VOIP, and for any service locked to our office IP, they can be connected via a VPN.

‍

Citrix seems to be a trendy and quick solution. Contacting any MSP doing Citrix, Azure, AWS would work can get you set up and running in no-time.

‍

Think of remote apps. Either procure a few remote desktops and then a VPN to the client’s office or (if the app is small) migrating the app into the cloud and doing a hybrid environment if you still need AD access on your local environment.

‍

For the phones, it is advised to look at a platform that provides mobile-first support. And the following applications seem to be the most popular ones of choice.

  • Avaya Aura.
  • Aircall.
  • Talkdesk.
  • Contact Center.
  • 3CX
  • MiCloud Connect.

‍

It is possible to run any of the above applications from either a web browser, mobile app, or Desktops app.

‍

Problems you're going to face

‍

The cold hard truth is that unless you are a big-ticket MSP used to handling high volume work from home setups, you will struggle. But not for long. Know that it is hard having to get into multiple home machines by the dozen all at once. 

‍

Here's where the Team viewer and Google remote desktop come in handy. 

‍

Note: Be advised that you have to install a full extension. 

‍

The imminent threat of Cyber vulnerability

‍

It is no doubt that if we talk about a perfect situation for cybercriminals to prey on victims, it would be very similar to the current scenario.

‍

Global fear of a situation that changes every day. A lack of information and an abundance of misinformation puts millions in a state of anxiety.

  1. Millions of workers working from home for the first time.
  2. Workers are given new technologies for remote work such as Microsoft Teams, Slack, Onedrive, Dropbox, VPNs, etc. Anxiety on using these new technologies prevail.
  3. Using home computers or laptops that are not adequately managed by IT personnel. Computers with inadequate security, antivirus, and threat detection.
  4. Constant legitimate emails from 1000s of businesses talking about their plans to keep customers and employees safe.
  5. Millions of phishing emails mimicking legitimate emails. 

‍

The current scenario seems to be the perfect diabolic concoction for anyone with malicious intent to take advantage of business email compromise, data breaches, and various other cyber crimes!

‍

Hence fellow MSPs like you have already started rethinking their endpoint security and cyber safety. With the following tools popularly recognized to be most efficient in covering their security needs. 

‍

Should I stop selling? 

‍

With these uncertain times where many MSPs are struggling with a surge of incoming requests and are finding it hard to cater to existing customers, it is not uncommon for you to think if you should invest more in selling.

‍

SALES IS THE OXYGEN THAT FUELS EVERY OTHER MSP ACTIVITY

‍

It is agreed that times are tough, and it's pertinent to set up processes, talk to clients, assure functionality. But in the bigger picture, problems are temporary. Though these problems are essential, however, sales remain the oxygen that fuels these other activities. That said, trying to sell while managing clients, deals, documents, and projects in one single PSA tool seems ridiculously confusing. Many modern MSPs have already made the switch to a cloud-native sales solution like Zomentum that fast tracks your sales cycle and maximizes your productivity. Sign-up for a free demo today!

‍

Disclaimer: The author does not claim expertise within the field of IT solutions, all the tips were gathered from the good folks of the MSP reddit thread.

SEO for MSPs PPC for MSPs
Definition Optimizing your website to rank organically in search engine results pages (SERPs) without paying for clicks. Paying for advertisements that appear at the top of SERPs, and you're charged each time someone clicks on your ad.
Cost Generally, lower cost as it's based on time and effort to optimize your website. Can be expensive, as you pay for every click on your ads, and costs can add up quickly.
Time to Results Takes time to see significant results, often several months to gain visibility in organic listings. Provides immediate results; your ads can start generating traffic and leads as soon as your campaign is live.
Sustainability Sustainable over the long term if you consistently maintain your SEO efforts. Reliant on a continuous budget; traffic stops when you stop paying for ads.
Click Quality Usually, it has higher click quality as users find organic results more trustworthy and relevant. Click quality can vary, and not all clicks may lead to conversions, potentially leading to a wasted budget.
Competition Competing with other websites for organic rankings, but the playing field can be more level. Competing with other businesses for ad placements can be fierce, and costs can rise in competitive markets.
Targeting Options Limited control over specific keywords that drive traffic; relies on keyword optimization. Precise control over keywords, demographics, and location targeting, allowing for more precise audience reach.
Performance Tracking Tracking and measuring results can be challenging, but tools like Google Analytics can help. Easily track and measure performance with detailed metrics and conversion tracking tools.
Long-term Strategy Builds a strong online presence and brand authority over time. Effective for short-term goals and promotions but doesn't contribute to long-term organic growth.
Click Costs No direct click costs; traffic is "free" once you've optimized your site. Direct click costs are associated with each visitor who clicks on your ad.
Advertisements vs. Organic Results Focuses on achieving high rankings in organic search results. Focuses on paid ads displayed above organic results.
Keyword Research Important for optimizing content and targeting relevant keywords. Crucial for selecting the right keywords and managing bidding strategies for ad campaigns.
How are fellow MSPs leveraging multiple tools to get a Remote Set-up for clients
How are fellow MSPs leveraging multiple tools to get a Remote Set-up for clients

How are fellow MSPs leveraging multiple tools to get a Remote Set-up for clients

MSP Remote tools setup illustration

The advent of COVID-19 has paved the way for multiple requests to help your clients with remote work setup. It is never as easy as it sounds! With numerous problems starting from endpoint security, lack of remote work infrastructure, you must already be wondering about questions like do I secure a VPN or go for a solution like Splashtop. Does each employee get a device, or should I only support BYOD? Here are a few common points on how you can go about securing a safe WFH setup without losing focus on what's essential, as done by fellow MSPs.

‍

VPN setup

‍

Hardware VPNs set up by far come across as the right solution for users with existing assets. That being said, you'll find that a software VPN typically has better pricing, and that access is a little easier to configure for your customers.

‍

But before you can start, you need to be asking yourself some questions:

‍

  • What does each of my customer environments entail?
  • Are the assets on the cloud? 
  • Are those cloud assets already tied with some gateway or VPN to an on-premise?
  • Do I have to provide hosting, or is everything on-premise?

‍

Popular choices for VPN

‍

  1. OpenVPN
  2. Surfshark
  3. IPVanish
  4. CyberGhost.

    

Choosing the correct VPN server is exceptionally pertinent, as you need to determine where you will put your VPN server. Though most popular solutions dictate that it be placed where whatever network accesses the VPN server as that's where the client connects. It is much safer building your server in a cloud environment where you can scale performance up or down without needing to worry about hosting & network complications. Your VPN server won't require much processing power, but you need to be flexible with that for events where you will see a spike in usage.

‍

Note: However, it is warned that OpenVPN, while free, doesn't have the most user-intuitive GUI.

‍

Using Cisco's Duo for 2-factor security 

‍

If you are using LDAP like most MSPs - probably Active Directory, setting up LDAP will make life easier for your customers so they can use existing credentials. If you want to get more robust, you can dual-home the network of your VPN server and assign different network groups based on AD groups for organizations that may require access segregation. 

‍

Microsoft free E365 for teams

‍

With Microsoft's free six-month license, this software has become so popular that in the very first week, it crashed in Europe. However, it remains a very convenient solution to be taken advantage of in setting up for small clients.

‍

However, it is observed that the groups and naming schemes, when not clearly defined, may find it become too "crowded" with multiple groups in similar names. Though it's debated on whether it's a network issue or a usage issue, you can (and should) implement naming policies and expiration policies for O365 groups, and therefore teams.

‍

The naming policies allow you to dictate a prefix or suffix for the name, such as a location or department. Additionally, you can configure blocked words, such as "credit cards," or "employee SSNs" or something silly.

‍

The Expiration Policies will self-police groups into being removed if they aren't actively used. Team owners will have plenty of notification to renew the group if they feel it is still relevant, otherwise they will be soft-deleted for 30 days before being completely removed (admin configurable retention).

‍

It is safer only to put in place hierarchical access in the organization that abides by the guidelines you implement.

‍

Firewall options 

‍

OPNsense firewall seems to be a popular choice, as it's regarded to be secure, and the administrator is only limited by the hardware you install it on. Since about any desktop or server CPU in the last nine years has AES-NI hardware acceleration, it doesn't take much equipment. If you want to keep your current firewall, it is also possible to configure PFsense as just an OpenVPN server or install OpenVPN on your favorite Linux distro. OpenVPN looks like https traffic, so you can even load-balance it behind Nginx if you need more than one server to handle the load.

‍

Setting up Azure platform 

 

Microsoft's Azure is firmly catching up on the cloud-platforms market over AWS. The primary advantage being how it can be up and running in a matter of ten minutes! First, you create a directory, then add users. It can have Linux or Windows of various sizes and can bring your licenses.

‍

Quick-fix solutions to get a remote office running

‍

Ensure all helpdesk and techs have a laptop and headset that stays at home and is ready to use in case the building gets closed down.

‍

Make sure your phones are VOIP, and for any service locked to our office IP, they can be connected via a VPN.

‍

Citrix seems to be a trendy and quick solution. Contacting any MSP doing Citrix, Azure, AWS would work can get you set up and running in no-time.

‍

Think of remote apps. Either procure a few remote desktops and then a VPN to the client’s office or (if the app is small) migrating the app into the cloud and doing a hybrid environment if you still need AD access on your local environment.

‍

For the phones, it is advised to look at a platform that provides mobile-first support. And the following applications seem to be the most popular ones of choice.

  • Avaya Aura.
  • Aircall.
  • Talkdesk.
  • Contact Center.
  • 3CX
  • MiCloud Connect.

‍

It is possible to run any of the above applications from either a web browser, mobile app, or Desktops app.

‍

Problems you're going to face

‍

The cold hard truth is that unless you are a big-ticket MSP used to handling high volume work from home setups, you will struggle. But not for long. Know that it is hard having to get into multiple home machines by the dozen all at once. 

‍

Here's where the Team viewer and Google remote desktop come in handy. 

‍

Note: Be advised that you have to install a full extension. 

‍

The imminent threat of Cyber vulnerability

‍

It is no doubt that if we talk about a perfect situation for cybercriminals to prey on victims, it would be very similar to the current scenario.

‍

Global fear of a situation that changes every day. A lack of information and an abundance of misinformation puts millions in a state of anxiety.

  1. Millions of workers working from home for the first time.
  2. Workers are given new technologies for remote work such as Microsoft Teams, Slack, Onedrive, Dropbox, VPNs, etc. Anxiety on using these new technologies prevail.
  3. Using home computers or laptops that are not adequately managed by IT personnel. Computers with inadequate security, antivirus, and threat detection.
  4. Constant legitimate emails from 1000s of businesses talking about their plans to keep customers and employees safe.
  5. Millions of phishing emails mimicking legitimate emails. 

‍

The current scenario seems to be the perfect diabolic concoction for anyone with malicious intent to take advantage of business email compromise, data breaches, and various other cyber crimes!

‍

Hence fellow MSPs like you have already started rethinking their endpoint security and cyber safety. With the following tools popularly recognized to be most efficient in covering their security needs. 

‍

Should I stop selling? 

‍

With these uncertain times where many MSPs are struggling with a surge of incoming requests and are finding it hard to cater to existing customers, it is not uncommon for you to think if you should invest more in selling.

‍

SALES IS THE OXYGEN THAT FUELS EVERY OTHER MSP ACTIVITY

‍

It is agreed that times are tough, and it's pertinent to set up processes, talk to clients, assure functionality. But in the bigger picture, problems are temporary. Though these problems are essential, however, sales remain the oxygen that fuels these other activities. That said, trying to sell while managing clients, deals, documents, and projects in one single PSA tool seems ridiculously confusing. Many modern MSPs have already made the switch to a cloud-native sales solution like Zomentum that fast tracks your sales cycle and maximizes your productivity. Sign-up for a free demo today!

‍

Disclaimer: The author does not claim expertise within the field of IT solutions, all the tips were gathered from the good folks of the MSP reddit thread.

How are fellow MSPs leveraging multiple tools to get a Remote Set-up for clients