Motivation Remote access solutions using the internet as the transport medium are gaining in importance with an extensive supply of high performance access points. An immense potential exists to reduce the costs associated with traditional solutions.
This concerns the connection between company sites and the linking of branches and home offices, but particularly the secure integration of mobile devices. Present solutions do have typical insufficiencies in security, especially regarding the integration of notebooks and mobile network access for executives. Even without using the internet there is an urgent need within company networks to ensure security in both information and communication. Typical examples are Wireless Networks and the operation of important applications within public areas of organizations. Even complying with Federal Laws that regulate Personal Data Protection, demands a secure network solution for a wide range of applications, e.g. in the medical sector or personnel administration.
Thus Virtual Private Networks actually become the cost-saving and flexible alternative for many diverse scenarios and operations. They are getting safer, and can be better integrated into any company structure with highly advanced operation and performance features, than standard point-to-point connections, or the unprotected use of LANs. Equipped with the latest cryptographic systems, VPN solutions are now capable of significantly increasing the security-level of network links. However, all of these solutions are based on complex protocols and demand a great deal of design of the overall solution.
Because of these complexities, even VPN solutions, like other security solutions, can produce significant operational problems and thereby endanger adequate use. This is especially due to the declining costs of VPN solutions, which can result in companies applying VPN solutions without appropriate preparation. Consequently, many of these solutions eventually fail due to the difficulties of operating with encoded security solutions.
Content This new report by ComConsult Research demonstrates important milestones in constructing VPN solutions and outlines the organization and operation of some typical scenarios. Single components of optimum solutions are evaluated according to their practical requirements. Using these tools you will be empowered to design your own individual, technically and economically optimized, VPN solution.
In this Report you will learn how to
develop cost-optimized Remote Access solutions
eliminate typical and serious security-defects in the operation of notebooks and network-access for executives and managers
achieve, with the well-directed use of VPN-solutions, the maximum internal and external protection of personal data, critical applications and complex operations such as those required within the medical sector
achieve maximum protection even within unsafe areas and while using the internet
design solutions with technical perfection that deliver maximum efficiency in economic, performance and operational terms
In detail
this report explains the basics of encryption techniques and introduces the mysteries of DES, 3DES, RC4, AES and other cryptographic standards.
this report illuminates the differences between symmetrical and asymmetrical keys and explains the use of Public Key Systems and digital signatures.
this report demonstrates the requirements of the RAS-solution: what does the dial-in-component accomplish? how is the user authenticated? what does RADIUS provide? what is gained by the use of certificates or biometrical features?
this report illustrates in detail the aims and objectives of managing one’s own key: what actually constitutes certificates, and how do they work? which instances have to be constructed for one’s own key-management? how can individual instances be replaced or completed by public certification authorities?
this report discusses necessary design fundamentals of VPN solutions: how to consider solutions based on Firewalls? how to integrate VPNs and Firewalls into an overall security concept? how to delegate operational tasks? what kind of staff requirements arise?
finally an extra chapter solves the question of how to construct a secure VPN solution with Windows standard methods, what kind of protocols are available with Windows 2000, and how IAS, the Microsoft certification services and the Windows Policies, can be embedded in such a solution.
With an introduction to the basics, an overall survey of present VPN products their features and components, including a series of practical design-proposals, this report belongs to the outstanding standard works on VPNs and RAS solutions. It is an absolute necessity for all developers and operators of such solutions. The author has many years of professional experience in the development and operation of these solutions. Accordingly this report not only presents the technique but also considers the subsequent operation. |