Re: Linux VPN server and client



Am Mon, 26 Nov 2007 05:50:28 -0800 schrieb susikaufmann2003@xxxxxxxxxxx:

Hello,

I have written a Java application which needs to access an external
mysql-database. To secure the connection I would like to use a VPN.
Perhaps someone has experience with strongSwan as server? Smartcard-
support is also needed, because my java-app uses a javacard to encrypt
data, so I also want to use it for the VPN-auth.

Perhaps someone also knows a good small client, which I can call from
my Java-App, so the user do not have to open the VPN client by
himself.

Regards,

Susanne

Hello,

at the very first what is a javacard?
Usually you have 3 kinds of authentication challenges (IPSec).
1. preshared key (password auth)
2. via public rsa key (usually kept in DNS)
3. via CA (you can build your own PKI)

What I don't understand is the smatcard thingy to encrypt the data, if you
have a tunnel successfull established then you have a secure and encrypted
connection.
Do you want an userauth. via smartcard?

cheers
.



Relevant Pages

  • Re: Small business thinking about backing up data, having a server and 2-3 users - is SBS200
    ... This is probably not the thread to get into an argument over this but RWW is ... more secure in the standard implementation used by most small businesses. ... Is Remote Web Workplace with RDP more secure than VPN? ... you in via the RDP connection. ...
    (microsoft.public.windows.server.sbs)
  • Re: Questions about ISA 2000 and OWA
    ... VPN is a secure connection BUT if the user gets infected it can get into the ... OWA for certain types of viruses but then for OWA you have to open up ...
    (microsoft.public.backoffice.smallbiz2000)
  • Re: Small business thinking about backing up data, having a server and 2-3 users - is SBS200
    ... RWW is out ... more secure in the standard implementation used by most small businesses. ... Is Remote Web Workplace with RDP more secure than VPN? ... you in via the RDP connection. ...
    (microsoft.public.windows.server.sbs)
  • Re: RWW revisited
    ... > You wanted to know how secure RWW was and I'm comparing to a VPN ... > Remote web workplace is a port 443 connection and then it dynamically ... Do you use passphrases instead of passwords? ...
    (microsoft.public.windows.server.sbs)
  • RE: Permanent VPN
    ... You might try ipsec instead of VPN. ... it will encrypt the connection and usually works pretty well. ...
    (microsoft.public.windows.server.setup)