Librenix  
(Show all VPN articles . . .
)  
Headlines | Linux | Apps | Coding | BSD | Admin | News
Information for Linux System Administration 

Secure an SSL VPN with one-time Passcodes and Mutual Authentication

Up
vote
Down

SSL-based VPNs were designed to eliminate the need for complex configurations on the user's PC. Unfortunately, that was before the dangers of public WiFi networks and tougher regulatory requirements came into being. Thanks to WiFi, many attacks that were difficult are now quite simple. In particular, a man-in-the-middle attack can intercept SSL-encrypted traffic, rendering SSL-based VPNs useless - even if it is protected by a typical one-time password system. The man-in-the-middle can easily feed the one-time password into the SSL-based VPN within the alloted time.
 read more | mail this link | score:6052 | -falko, July 2, 2007
More Sysadmin articles...

Fine Art Online Gallery

admin headlines

Multiarch: Use 32bit Packages on 64bit Debian 7

Tutorial: Run Contao 3.x on Nginx on Debian 7/Ubuntu 12.10

Tutorial: Install Nginx, PHP5, PHP-FPM, MySQL on OpenSUSE 12.2

Secure Apache2 with LinOTP

Haraka Mail Server: Spamassassin Plugin

Server monitoring with Icinga (Debian 6)

 

Firefox sidebar

Site map

Site info

News feed

Features

Login
(to post)

Search

 
Articles are owned by their authors.   © 2000-2012 Ray Yeargin