Truly as ant2112 mentioned, that can be quite dangerous. If you are dead set against VPN, at the very least you should configure the service with a source and dest. IP to isolate the traffic.
Regarding VPN - if you have a license for MUVPN I can walk you through that configuration, or if you do not, PPTP is free and quite simple to configure on both the FB and the client.