I have a off and on IT client that for the most part is DYI and like to do things themselves. They asked me a few years ago about doing a security system for them, the other guys got the job because of licensing issues here in NY. I got a call from them today and they told me that the credit card vendor will stop doing business with them because of open ports on their router. They have 30 days to resolve this or its curtains for their credit card swiper. I stopped over tonight and turns out its all about what the other guys did, I gave them a choice, I can fix it NOW and close it up and loose the remote viewing or we can get them set with a new router with a VPN. Needless to say they were really pissed off about what I had to say. Now they start bitching about the other guy who installed the system...hahahah ..I did a quick GRC scan and showed them port 80,554,555,556,557 and 558 were open. They paid me and my guess they will try to get the other guys to fix it or do a DYI VPN themselves. This is not the first time I have run into this. I also had a dental office combine phone systems and they ended up taking out my firewalls and put their stuff in for VPN's for the phone systems. I told the client that once they did that, the telecom company owned it and I was not responsible for security issues anymore. Same thing with open ports and the credit card company. Took them about a month to get it fixed.