×

Good News Everybody!

The new search engine is LIVE!

Please report any problems to david (at) midrange.com.




Chris,

fair enough, makes sense.

Just never seen SSL used on an internal network. From what you say from a
security point of view, that would mean that all network traffic would have
to be encrypted, to protect the CEOs password, now how much additional load
is that on a network?


On 06/12/05, Chris Bipes <chris.bipes@xxxxxxxxxxxxxxx> wrote:
>
> VPN is only secure to the VPN concentrator, not necessarily to the AS400
> applications.  If you do not want a network tech to sniff your CEO's
> iSeries 5250 logon, you need to run Telnet-SSL.  All your internal
> communications that may include logon info, or other sensitive data
> should use encrypted connections to the server.  I as a network tech can
> change any of our switches to echo the data from one port to my PC.  I
> have a map of what devices are connected to what port on the switches so
> I know where everyone is connected.  Even if your iSeries is the VPN
> server, by tracing the Telnet server, I can get your user id and
> password when you signon and do not have an encrypted connection.
>
>
> Christopher Bipes
> Information Services Director
> CrossCheck, Inc.
>
> 707.586.0551, ext. 1102
> 707.585.5700 FAX
>
> Chris.Bipes@xxxxxxxxxxxxxxx
> www.Cross-Check.com
>
> Notice of Confidentiality: This e-mail, and any attachments thereto, is
> intended only for use by the addressee(s) named herein and may contain
> legally privileged and/or confidential information.  If you are not the
> intended recipient of this e-mail, you are hereby notified that any
> dissemination, distribution or copying of this e-mail, and any
> attachments thereto, is strictly prohibited.  If you have received this
> e-mail in error, please immediately notify me by e-mail (by replying to
> this message) or telephone (noted above) and permanently delete the
> original and any copy of any e-mail and any printout thereof.  Thank you
> for your cooperation with respect to this matter.
>
>
> -----Original Message-----
> From: midrange-l-bounces@xxxxxxxxxxxx
> [mailto:midrange-l-bounces@xxxxxxxxxxxx] On Behalf Of Colin Williams
> Sent: Tuesday, December 06, 2005 8:55 AM
> To: Midrange Systems Technical Discussion
> Subject: Re: PC5250 Telnet - security and setup
>
> Tom,
>
> I thought the whole point of VPN is that it is secure.
>
> Dont you have to install a certificate on you PC to get VPN to work.
>
> Wouldnt you have to be working in a very security conscious environent
> if
> you need a secure link through a secure tunnel?
>
> --
> This is the Midrange Systems Technical Discussion (MIDRANGE-L) mailing
> list
> To post a message email: MIDRANGE-L@xxxxxxxxxxxx
> To subscribe, unsubscribe, or change list options,
> visit: http://lists.midrange.com/mailman/listinfo/midrange-l
> or email: MIDRANGE-L-request@xxxxxxxxxxxx
> Before posting, please take a moment to review the archives
> at http://archive.midrange.com/midrange-l.
>
>

As an Amazon Associate we earn from qualifying purchases.

This thread ...

Replies:

Follow On AppleNews
Return to Archive home page | Return to MIDRANGE.COM home page

This mailing list archive is Copyright 1997-2026 by midrange.com and David Gibbs as a compilation work. Use of the archive is restricted to research of a business or technical nature. Any other uses are prohibited. Full details are available on our policy page. If you have questions about this, please contact [javascript protected email address].

Operating expenses for this site are earned using the Amazon Associate program and Google Adsense.