Great Circle Associates Firewalls
(February 1997)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: Secure Telneting into a internal network
From: Adam Shostack <adam @ homeport . org>
Date: Sat, 1 Feb 1997 21:33:14 -0500 (EST)
To: derrick . cole @ ssds . com
Cc: aharpham @ cnweb . com, Firewalls @ GreatCircle . COM
In-reply-to: <Pine . GSO . 3 . 95 . 970130140106 . 20876O-100000 @ raleigh> from Derrick 'Red 5' Cole at "Jan 30, 97 02:14:41 pm"

Derrick 'Red 5' Cole wrote:
| On Thu, 30 Jan 1997, Allen D. Harpham wrote:
| > 
| > They use a windows based telnet package that they would like to use to
| > access their hosts on the internal network over the internet.
| 
| This is the behaviour purported by this "shim" idea.  It situates itself
| in the midst of the winsock stack, and "knows" (most likely via routes to
| destinations using pseudo interfaces - as with swIPe) when to encrypt a
| session and when not to.

	There are a couple of shims that sit above winsock now, rather
than mucking with it.  V-One makes one, theres another called VTCP.
You point your network program to 127.0.0.1 on some port, and it wraps
the connection in an 'secure pipe' to the firewall.  V-One offers the
nice ability to control where users connect to once they connect over
this pipe.

	On the down side, you find yourself saying 'the V-One client
server protocol' or 'the V-One online registration protocol' an awful
lot, and they're both mouthfuls.

Adam

-- 
Pet peeve of the day: Security companies whose protocols dare not
speak their name, because they don't have one.  Guilty company of the
day is now V-One.



Indexed By Date Previous: Re: Sidewinder vs. Cyberguard
From: Matthew Patton <patton @ sysnet . net>
Next: Re: Highly available Internet connection
From: Rabid Wombat <wombat @ mcfeely . bsfs . org>
Indexed By Thread Previous: Re: Sidewinder vs. Cyberguard
From: jeromie @ garrison . com (Jeromie Jackson)
Next: RE: Secure Telneting into a internal network
From: Jerry Mendes <mendes @ garnet . berkeley . edu>

Google
 
Search Internet Search www.greatcircle.com