[OpenVPN home] [Date Prev] [Date Index] [Date Next]
[OpenVPN mailing lists] [Thread Prev] [Thread Index] [Thread Next]
Google
 
Web openvpn.net

[Openvpn-users] OpenVPN client security checks


  • Subject: [Openvpn-users] OpenVPN client security checks
  • From: "John A. Sullivan III" <jsullivan@xxxxxxxxxxxxxxxxxxx>
  • Date: Mon, 02 Jan 2006 08:18:21 -0500

Hello, all.  I was fascinated to see a reference to using NMAP in the
client scripts.  It sounds like we have the opportunity to do some sort
of end point security check before allowing connections.  That would be
a powerful alternative to some of the proprietary SSL solutions.

However, I can also see all sorts of shortcomings.  For example, if we
check for open ports and the client is behind a NAT firewall which also
protects public servers on a DMZ, I would imagine we would show false
positives.

Can anyone point me to or share examples of how end point security
checks have been implemented for OpenVPN clients? Thanks - John
-- 
John A. Sullivan III
Open Source Development Corporation
+1 207-985-7880
jsullivan@xxxxxxxxxxxxxxxxxxx

If you would like to participate in the development of an open source
enterprise class network security management system, please visit
http://iscs.sourceforge.net


____________________________________________
Openvpn-users mailing list
Openvpn-users@xxxxxxxxxxxxxxxxxxxxx
https://lists.sourceforge.net/lists/listinfo/openvpn-users


Warning: require_once(../../../archive_common.php) [function.require-once]: failed to open stream: No such file or directory in /home/openvpn/domains/openvpn.net/public_html/archive/openvpn-users/2006-01/msg00017.html on line 195

Fatal error: require_once() [function.require]: Failed opening required '../../../archive_common.php' (include_path='/usr/local/lib/php') in /home/openvpn/domains/openvpn.net/public_html/archive/openvpn-users/2006-01/msg00017.html on line 195