How To Secure An SSL VPN With One-Time Passcodes And Mutual Authentication

  2007-07-02 13:00:03
SSL-based VPNs were designed to eliminate the need for complex configurations on the user's PC. Unfortunately, that was before the dangers of public WiFi networks and tougher regulatory requirements came into being. Thanks to WiFi, many attacks that were difficult are now quite simple. In particular, a man-in-the-middle attack can intercept SSL-encrypted traffic, rendering SSL-based VPNs useless - even if it is protected by a typical one-time password system. The man-in-the-middle can easily feed the one-time password into the SSL-based VPN within the alloted time. 
  PNG Image  PNG Image  PNG Image
  Related tags  


This particular article has been collected via RSS syndication. We apologize if it's too brief.
If You wish to publish articles on LinuxStreet.net please contact us.


  Similar articles found on LinuxStreet  
ImageHow to secure VNC remote access with two-factor authentication
ImageSecure Kerberized authentication on Solaris 10 using IBM AIX Version 5.3
ImageHow to secure WebDAV with SSL and Two-Factor Authentication
ImageHowTo: Secure your Ubuntu Apache Web Server
Imagesshpass - Non-interactive ssh password authentication
ImageOpen Source Security Toolkit Cryptlib 3.3 Meets TLS Standard
ImageImplement NFSv4: Domains and Authentication
ImageLinux Pluggable Authentication Module (PAM) Overview: Rock Solid Security
ImageTransfer files securely with SFTP
ImageCryptocard Protects Over 2000 Schools in England

Leave a comment on this article


Captcha

  
Check this if the code you see is not readable and resubmit the form.
(Data you entered will be preserved)



  

Comments (0)