home
NEWS       BLOGS       FORUMS       NEWSLETTERS       RESEARCH       EVENTS       DIGITAL LIBRARY       CAREERS  
Network Computing Network Computing Powered by InformationWeek Business Technology Network

IMMERSE YOURSELF:

SOA

  |

Data Center

  |

802.11n

  |

Data Privacy

  |
APO  |

Virtualization

  |

NAC

  |

Security

  |

Network Mgmt

  |

Enterprise Apps

  |

Storage & Servers






Unlocking Virtual Private Networks


Deciphering The Goal Of Virtual Private Networking
Virtual private networking is quite the buzz phrase, and everyone, it seems, has a solution that hits the VPN mark. Vendors describe the purpose of VPN in two ways--as an IPSec-compatible solution or as a non-IPSec one--and the difference hinges entirely on which market the vendor is addressing. Depending on who's talking, the terms "virtual" and "private" also may take on different, though equally valid, meanings.

Virtuality At its simplest, "virtual " should indicate that a network connection is dynamic, exi sting according to organizational needs, and not a nailed-down connection; it is formed logically, regardless of underlying structure. Vendors in the IPSec camp contend that IPSec allows end points to connect using the available IP network as a backbone. The virtuality stems from the flexibility of the VPN devices to build up and tear down tunnels as needed. Furthermore, security parameters for the individual tunnels can be negotiated among sites so that separately managed sites can achieve acceptable levels of security. Socks adherents spout similar views, but Socks implementations operate at the application level, and Socks applications don't really tunnel traffic as much as encrypt it before the stack even sees it.

What Privacy? The "private" part of VPN becomes more critical when you use the Internet, or any unprotected network, as your virtual backbone. Privacy is typically considered in the context of hiding data from prying eyes or tampering. The complete VPN network should be as strong as your internal network. IPSec encrypts data and, in some cases, entire IP packets. The mechanisms for encryption are modular and the exact security parameters are negotiated during the tunnel setup, so you can use just about any combination of authentication and encryption that suits your needs. Socks 5 implementations, such as Aventail's Autosocks client, operate in a similar manner, though the implementation will differ.

Non-IPSec followers think of privacy in a radically different way. They say it means that a user has a tunnel down which only its traffic runs. This is a bit of a stretch, because all the data must traverse shared media--and the data, with no other modification to the packets, travels across networks in the clear. The only thing private about PPTP, L2F and L2TP is is that when a tunnel is associated with a particular user, the tunnel appears as a private link. Microsoft has a PPTP client for Windows95 and Windows NT and can use its own proprietary encryption, but the majority of remote VPN u sers generally must dial into a point of presence (POP). The POP makes a VDPN connection to a server on the corporate LAN, and the user's Point-to-Point Protocol (PPP) traffic is sent to it.



For the Side Bar on
Choosing A Service Provider

Driving The VPN Market

Picking a VPN Solution


Updated October 24, 1997







Ready to take that job and shove it?

Function:

Keyword(s):

State:
SPONSOR
RECENT JOB POSTINGS
CAREER NEWS
Go beyond Google and get vertical. These specialized search sites will help you find the business information you need -- fast.

Ari Balogh was named to the post of chief technology officer as the companys for a "realignment" of employees.










InformationWeek U.S. IT Salary Survey 2008
Salaries for business technology professionals are falling. Here's what you need to know in order to make good hiring decisions and personal career choices. Download Today
 
ROLLING RIGHT ALONG
Follow key Network Computing Reviews from conception to completion. This Week: Holistic APM.



Network Computing Reports Emerging Enterprise Podcast Series: Secrets to Success








TechSearch


Microsite of the Week


Powerful Information at Your Fingertips



InformationWeek Business Technology Network
InformationWeekInformationWeek 500InformationWeek 500 ConferenceInformationWeek AnalyticsInformationWeek CIO
InformationWeek EventsInformationWeek ReportsInformationWeek MagazinebMightyByte and SwitchDark Reading
Digital LibraryIntelligent EnterpriseInternet EvolutionNetwork ComputingNo JitterPlug Into The Cloud
space
Techweb Events Network
InteropVoiceConWeb 2.0 ExpoWeb 2.0 SummitEnterprise 2.0 ConferenceMobile Business ExpoSoftware ConferenceCSI - Computer Security Institute
Black HatGTECEnergy CampMashup CampStartup Camp
space
Light Reading Communications Network
Light ReadingLight Reading EuropeUnstrungLight Reading's Cable Digital NewsConstantinopleInternet EvolutionPyramid Research
Heavy ReadingLight Reading Live!Light Reading InsiderEthernet ExpoOptical ExpoTeleco TVTower Technology Summit
space
Financial Technology Network
Advanced TradingBank Systems & TechnologyInsurance & TechnologyWall Street & TechnologyAccelerating Wall StreetBank Systems & Technology Executive SummitBuyside Trading SummitInsurance & Technology Executive Summit
space
Microsoft Technology Network
MSDN MagazineTechNetThe Architecture Journal
space