So, my friend has a fully-remote job, but his employer only allows him to work within the state the company is based in. He is planning to move outside of that state, but isn’t prepared to quit his job yet.

To evade detection from IT, this friend wants to set up some sort of VPN tunnel to leave with a relative within the original state, to route the traffic from his work laptop (which is locked down via JAMF software) through. The family he’s leaving this setup with isn’t tech savvy, and wouldn’t be able to troubleshoot anything beyond powercycling a device or plugging in an ethernet cable.

What would he need to do to set up such a tunnel, ideally with remote access to adjust settings/troubleshoot, and how does he ensure that his work laptop never exposes an out-of-state IP to his employer?

Apologies, mods, if this post falls under Rule 3 for “professional” help.

  • Nollij@sopuli.xyz
    link
    fedilink
    English
    arrow-up
    17
    ·
    3 days ago

    First, this approach is going to fail at some point. Depending on how far away it is, that could be a major issue. It also makes some very bold assumptions about connection speed and latency that are probably not true.

    Second, IP doesn’t reliably show location. My cable ISP is typically geolocated to Chicago, despite it being 2 states away. Same for T Mobile connections.

    Third, it’s incredibly unlikely that the employer is going to be looking at IP addresses to determine location. Even if they wanted to use tech for this purpose, they would use location services/GPS/etc. Which a VPN won’t conceal.

    Fourth, changing the physical mailing address on file would be a bigger flag. But presumably he’ll list that family’s address, which could create other implications.