Great Circle Associates Firewalls
(November 1995)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: Firewalls-Digest V4 #655
From: Adam Safier <asafier @ explorer . csc . com>
Date: Fri, 17 Nov 1995 22:27:32 -0500 (EST)
To: Firewalls @ GreatCircle . COM
Cc: LASDSDN @ ix . netcom . com
In-reply-to: <199511172033 . MAA11666 @ miles . greatcircle . com>

> 
> From: LASDSDN @
 ix .
 netcom .
 com (LASD DSB)
>
> we would still have the firewall but we would let RAS handle the 
> encryption.  Does anybody have any knowledge or experience of how RAS 
> 
> Fabian

I don't know about RAS but couldn't you place the RAS server or 
"decrypting" server between the firewall and Internal router?

The encrypted message should be in an IP envelope so if you use something
like plug-gw to force it the decryption server you con't have to have it
on the firewall.  I'm assuming the encrypted packets are on a specific
port number.  Of course I hope the user who has encryption keys is trusted
by the firewall.... 

Please keep me posted on replies, I'm working on an identical setup.

Adam Safier

Indexed By Date Previous: Re: virus at AOL
From: Calvin Ng <calvin @ bnn . com>
Next: Re: XIng Streamworks and Firewalls
From: jgt10 @ amdahl . com (John G. Thompson)
Indexed By Thread Previous: smart hub
From: Adam Safier <asafier @ explorer . csc . com>
Next: Re: Firewalls-Digest V4 #655
From: c62fi89 @ ibx . com (Robert Turner)

Google
 
Search Internet Search www.greatcircle.com