Professional Documents
Culture Documents
A P P LY IN G C R Y P TO G R A P H Y
FORESEC Academy
Applications ofEncryption
Confidentiality
- In Transit
- In Storage
Authentication & Integrity
FORESEC Academy
Confi
dentiality in Transit
Private Network
- Pro: Dedicated lines and equipment
are not shared by others
- Con: Dedicated lines are expensive,
grow more so with distance, and are
underutilized except at peak
FORESEC Academy
VPN Advantages
Improved Flexibility
- A VPN tunnel over the Internet can be set
up rapidly. A frame circuit can take weeks.
- A good VPN will also support Quality of
Service (QoS).
Lowered Cost
- There are documented cases of a VPN paying
for itself in weeks or months.
- There are also cases where the hidden costs
sunk the project!
FORESEC Academy
Client VPN
- Example: Laptop dial-up
connection
to remote access server at HQ
Site-to-Site
- Example: L.A. office connection to
D.C. office location
FORESEC Academy
Security Im plications
Bypassing Firewalls, IDS, Virus
scanners,
Web filters
Trusting the Other End
FORESEC Academy
IPSec O verview
Confi
dentiality in Storage