Great Circle Associates Firewalls
(January 1997)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: TCP/IP encrypted connection
From: Anthony Commarata <Anthony_Commarata @ jonesday . com>
Date: 10 Jan 97 16:53:51 EDT
To: firewalls <firewalls @ GreatCircle . COM>

I highly recommend NetCrypto; NetCrypto (McAfee) for Windows works with the 
existing TCP/IP stack ie: WRQ Reflections.  This is accompliced by operating on 
the windows DLL level.  Ensuring that each session between each workstation is 
encrypted, from the users perspective its transparent.   

NetCrypto has a few options for encryption level, DES, Triple-DES and PC1.  
However if used overseas you would have to use the 40 bit PC1 encryption to 
comply with the US government's US ITAR regulations which controls the export 
of encryption software.


           Complete Network Security and Privacy 

           NetCrypto Protects Your Data from Prying Eyes 

           Consider the information being sent over your network: confidential 
company data, electronic mail,
           proprietary output, not to mention your name and password every time 
you connect to a remote
           server. All of this information is sent over your network, or over 
the Internet, in plain clear text that
           can be easily intercepted, examined or modified by anyone else on 
the network.

           Not any more. With NetCrypto, all of your network sessions, 
including telnet, ftp, SQL, WWW,
           email and so on, are transparently encrypted with industry-standard 
strong encryption algorithms.
           Only you and the program you're interacting with on the remote 
server can see the decrypted
           information. Anyone else sees nothing but random gobbledygook.

           Transparent Protection 

           NetCrypto transparently protects all TCP/IP network traffic as it 
travels between UNIX,
           Windows, and Macintosh computers. It intercepts data coming from an 
application, and applies
           strong encryption before permitting them onto your network. On the 
destination computer,
           NetCrypto transparently decrypts the communications before passing 
them up to the receiving
           application.

           Using an open-architecture security manager, NetCrypto employs a 
variety of security technologies
           to prevent snoopers from gathering user names, passwords, 
transaction information, and other
           sensitive data as they pass from one computer to another across your 
networks or the Internet.
           NetCrypto supports Windows, UNIX amd Macintosh systems with TCP/IP 
networking.

           Easy to Install, Maintain, and Use 

           NetCrypto is easy to install, maintain, and use. On Windows and 
Macintosh systems, no
           application or system modifications are required eliminating two 
major impediments to
           implementing secure networking. No user training is required, since 
all encryption activities are
           transparent to the end user. Full compatibility with a non-NetCrypto 
machine is maintained, making
           NetCrypto roll-out a snap, even for large sites.

           Open Architecture to Support Standards 

           To cope with the wide range of emerging encryption standards, 
NetCrypto provides and
           open-architecture encryption manager into which new software modules 
for encryption,
           authentication, and filtering can be plugged. McAfee is committed to 
working both independently
           and with other interested third parties to support emerging 
standards.

           NetCrypto Benefits 

           By using NetCrypto, a company protects itself from the growing 
number of network-based attacks
           that result in downtime, leaked sensitive data, tampering, and other 
costly security breaches.
           Complementary security solutions such as firewalls and encrypting 
routers protect data from one
           site boundary to another, but NetCrypto provides true end-to-end 
protection. This makes
           NetCrypto particularly well suited not only to Internet remote 
access situations, but also to intranet
           applications within the enterprise.

           Ubiquitous Secure Computing 

           NetCrypto provides straightforward, transparent, strong network 
security, with an open
           architecture that handles emerging security standards, and that 
maintains full compatibility with non
           NetCrypto equipped machines. NetCrypto is the first product to 
reflect both the growing need for
           integrated security and the need for an open architecture upon which 
to base it. NetCrypto
           provides the link between the existing world of unprotected 
networked communications and the
           new world of ubiquitous secure networking.

                                                                         
Features and Benefits 

                Encrypts All TCP/IP Traffic 

                     Encrypting all network traffic ensures that any 
communication you have over
                     your network is private and secure from eavesdropping. 
                     Whether you're sending email, transferring files, or 
browsing the web, all
                     information across the network remains confidential. 
                     Because the traffic is encrypted at a system level, 
separate packages are not
                     required for different types of TCP communication. 
NetCrypto encrypts all
                     TCP traffic, including telnet, rlogin, email, WWW, SQL, 
ftp, and so on. 

                Software Solution 

                     No expensive hardware to purchase and install. The 
software is easily
                     distributed across an entire network, making roll-out a 
snap. 

                No System or Application Modifications 

                     Promotes compatibility with future operating system 
upgrades and
                     modifications. This also helps to prevent any conflicts 
with existing software
                     that may require an unmodified operating system. 
                     Since applications can be used without modifications in 
most cases, NetCrypto
                     can be put to use immediately with your existing code. 

                Negligible Network Overhead 

                     This means that NetCrypto will not slow your network down. 
Programs that
                     use lots of network bandwidth can often slow your network 
down, especially
                     on computers with slower processors. This does not happen 
with NetCrypto. 

                System drop-in on Windows and Macintosh 

                     The Windows and Macintosh versions of NetCrypto are 
'set-and-forget'
                     systems that are transparent to the user. 
                     This means that users can continue to use whatever 
programs they have been
                     using for email, telnet, ftp, etc( No training or 
relearning is required. 

                Available on Many Systems 

                     Since NetCrypto operates on most UNIX platforms, Macintosh 
systems, and
                     Windows 3.x, 95 and NT, you can be confident that all your 
systems will be
                     protected. 

                Requires No Key Management 

                     This greatly simplifies the administration of NetCrypto. 
No external key
                     management server is required. Key management can be added 
in the future
                     for authentication purposes, but it is not required. 

                Small Binary File 

                     Makes for easy network - or disk based distribution. 

                Multiple Encryption Algorithms 

                     Uses industry-standard encryption that meets most security 
requirements 
                     Supports DES, Triple DES, PC1 and Blowfish 

                Open Architecture 

                     NetCrypto supports plug-in software modules from a variety 
of vendors,
                     ensuring compatibility with future security technologies. 

                Compatible with Non-Encrypted Systems 

                     NetCrypto is completely compatible with non-encrypted 
TCP/IP systems.
                     When NetCrypto encounters a non-NetCrypto system at the 
other end of a
                     network connection, it can, at your option, either connect 
in a standard
                     non-encrypted fashion, or refuse the connection. 

                Expandable Features 

                     NetCrypto currently encrypts all TCP network traffic, and 
down the road,
                     you'll be able to add features such as authentication and 
filtering to the
                     NetCrypto system, expanding it to fit your present and 
future needs. 


Anthony J. Commarata, CNE
Sr. Network Engineer
Jones, Day, Reavis & Pogue

Indexed By Date Previous: FW-Farm management Application
From: "Stout, Bill" <bill . stout @ hidata . com>
Next: Re: FW-1 hacked? - Reply
From: Rabid Wombat <wombat @ mcfeely . bsfs . org>
Indexed By Thread Previous: Re: TCP/IP encrypted connection
From: m_fliguer @ sonda . cl (Miguel Fliguer - Troppus Erawtfos)
Next: Re: TCP/IP encrypted connection
From: Jyri Kaljundi <jk @ stallion . ee>

Google
 
Search Internet Search www.greatcircle.com