|
Chris, fair enough, makes sense. Just never seen SSL used on an internal network. From what you say from a security point of view, that would mean that all network traffic would have to be encrypted, to protect the CEOs password, now how much additional load is that on a network? On 06/12/05, Chris Bipes <chris.bipes@xxxxxxxxxxxxxxx> wrote: > > VPN is only secure to the VPN concentrator, not necessarily to the AS400 > applications. If you do not want a network tech to sniff your CEO's > iSeries 5250 logon, you need to run Telnet-SSL. All your internal > communications that may include logon info, or other sensitive data > should use encrypted connections to the server. I as a network tech can > change any of our switches to echo the data from one port to my PC. I > have a map of what devices are connected to what port on the switches so > I know where everyone is connected. Even if your iSeries is the VPN > server, by tracing the Telnet server, I can get your user id and > password when you signon and do not have an encrypted connection. > > > Christopher Bipes > Information Services Director > CrossCheck, Inc. > > 707.586.0551, ext. 1102 > 707.585.5700 FAX > > Chris.Bipes@xxxxxxxxxxxxxxx > www.Cross-Check.com > > Notice of Confidentiality: This e-mail, and any attachments thereto, is > intended only for use by the addressee(s) named herein and may contain > legally privileged and/or confidential information. If you are not the > intended recipient of this e-mail, you are hereby notified that any > dissemination, distribution or copying of this e-mail, and any > attachments thereto, is strictly prohibited. If you have received this > e-mail in error, please immediately notify me by e-mail (by replying to > this message) or telephone (noted above) and permanently delete the > original and any copy of any e-mail and any printout thereof. Thank you > for your cooperation with respect to this matter. > > > -----Original Message----- > From: midrange-l-bounces@xxxxxxxxxxxx > [mailto:midrange-l-bounces@xxxxxxxxxxxx] On Behalf Of Colin Williams > Sent: Tuesday, December 06, 2005 8:55 AM > To: Midrange Systems Technical Discussion > Subject: Re: PC5250 Telnet - security and setup > > Tom, > > I thought the whole point of VPN is that it is secure. > > Dont you have to install a certificate on you PC to get VPN to work. > > Wouldnt you have to be working in a very security conscious environent > if > you need a secure link through a secure tunnel? > > -- > This is the Midrange Systems Technical Discussion (MIDRANGE-L) mailing > list > To post a message email: MIDRANGE-L@xxxxxxxxxxxx > To subscribe, unsubscribe, or change list options, > visit: http://lists.midrange.com/mailman/listinfo/midrange-l > or email: MIDRANGE-L-request@xxxxxxxxxxxx > Before posting, please take a moment to review the archives > at http://archive.midrange.com/midrange-l. > >
As an Amazon Associate we earn from qualifying purchases.
This mailing list archive is Copyright 1997-2024 by midrange.com and David Gibbs as a compilation work. Use of the archive is restricted to research of a business or technical nature. Any other uses are prohibited. Full details are available on our policy page. If you have questions about this, please contact [javascript protected email address].
Operating expenses for this site are earned using the Amazon Associate program and Google Adsense.