Networking Forums

Networking Forums > Computer Networking > Linux Networking > Re: ssh, openswan, openvpn or ...?

Reply
Thread Tools Display Modes

Re: ssh, openswan, openvpn or ...?

 
 
J G Miller
Guest
Posts: n/a

 
      01-25-2010, 09:44 PM
On Mon, 25 Jan 2010 19:32:38 +0000, Greg Russell asked:

> We have several users that are "on the road" and require connectivity
> from various sites such as motels, coffeehouses, airports and dialup to
> various ISPs. We'd like to have a secure tunneling connection for these
> users, and we'd like to ask what might be a viable solution that works
> for all these various connection points?


The most secure would as far as I am aware be ssh over an openvpn with
TLS authentication session.

Have a look at the introduction and further documentation at

<http://www.openvpn.NET/index.php/open-source.html>

For even more security, you could consider the use of smart cards plus
user PIN as part of the authorization procedure.

<http://michele.pupazzo.ORG/docs/smart-cards-openvpn.html>

One nice aspect of openvpn is that you can set up categories of users,
with different access privileges, if so desired.

QUOTE
The server can enforce client-specific access rights based on embedded
certificate fields, such as the Common Name.
UNQUOTE

And should a laptop machine be lost on the road, even though the system
should be setup requiring a password as well as a certificate on the
laptop, the certificate on the laptop can be revoked at any time.
 
Reply With Quote
 
 
 
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Re: ssh, openswan, openvpn or ...? Stachu 'Dozzie' K. Linux Networking 0 01-25-2010 07:52 PM
Openswan and Openvpn cohexistance tohyob@yahoo.com Linux Networking 4 10-21-2007 06:06 PM
openswan pierre Linux Networking 0 02-28-2007 12:41 AM
openswan Adam Linux Networking 2 05-23-2006 11:04 AM
openswan vpn Luke Matthews Linux Networking 2 08-31-2004 08:32 PM



1 2 3 4 5 6 7 8 9 10 11