• Aucun résultat trouvé

An Introduction to the Tunneling Protocols

N/A
N/A
Protected

Academic year: 2022

Partager "An Introduction to the Tunneling Protocols"

Copied!
8
0
0

Texte intégral

(1)

An Introduction to the Tunneling Protocols

Alexandre Dulaunoy and various

ASBL CSRRT-LU (Computer Security Research and Response Team Luxembourg)

http://www.csrrt.org/

17th February 2006

(2)

OpenVPN - Introduction

OpenVPN is not an IETF standard but...

provides an open tunneling protocol over a single UDP or TCP stream

works over NAT and/or dynamics IP

provides only an ESP (IPsec terminology) like approach flexible authentication scheme (from static-key to X.509 certificate)

TUN/TAP interface, works at user-level (versus kernel-level IPsec)

2 / 8

(3)

OpenVPN - mode of operation

Authentication : secret key only or X.509 certification Mode : client or server or server-bridge

Routing : client-to-client, server-to-client (default), iroute/route?

Configuration : client-config (X.509), management interface,

(4)

OpenVPN hands-on

one client, one server (mixed OS or non-mixed OS) shared secret keys authentication

use a secure channel to exchange the shared keys

4 / 8

(5)

OpenVPN hands-on

one client, one server (mixed OS or non-mixed OS) X.509 authentication

use a secure way to handle the key enrollment process

(6)

OpenVPN hands-on

multiple clients (fixed IPs), one server X.509 authentication

use a secure way to handle the key enrollment process routing for a dedicated network on the server

6 / 8

(7)

OpenVPN hands-on

multiple clients (fixed IPs), one server X.509 authentication

use a secure way to handle the key enrollment process routing for a dedicated network on the server

client must reach another client using the server

(8)

Q and A

Thanks for listening.

http://www.csrrt.org.lu/

[email protected]

8 / 8

Références

Documents relatifs

We tested two different methods in order to extract terminology from logs: – Extraction of co-occurrences based on syntactic patterns (POS candidates) – Extraction of

If the dramatic, embodied reading of “This living hand” suggests Frankenstein’s dream of an animated creative text, the reading that considers the poem’s construction of

Environmental policies, which should aim to reduce the negative impacts of the economic constraints of production and trade, have proved unable to correct the

The present work aims to elaborate an efficient numerical approach to deal- ing with the interface effects described by the coherent interface model and to determining the

Our objective is to handle the adaptation of the UI to the context of use (platform, environment, user). Vale [22] describes a parameterized transformation

Table 3 summarizes the resulting "point" elasticities for a base case in which 90% of the insureds are in the low-rated class, 10% are in the high-rated class, and

[10] present an approach to ease the integration of variability models specified using different modeling styles, variabil- ity languages, and tools to perform configuration.

Based on the design and the deployment of a simplified Life Cycle Assessment (LCA) tool and an internal carbon pricing tool in the Engineering Department and