The SSL VPN is to solve the remote users access to sensitive company data the simplest the safe treatment technologies. Compared with complex IPSec VPN, SSL through the easy-to-use methods to realize information remote connectivity. Any installation browser machine can use SSL VPN, this is because the SSL embedded in the browser, it does not require IPSec VPN as traditional as per a client to install client software.
SSL introduces
SSL (Secure Sockets Layer) is developed by Netscape one set of Internet data security agreement, the current version for 3.0. It has been widely used in between Web browser and server the identity authentication and encryption data transmission. SSL protocol is located in the TCP/IP protocol and various application layer protocol for data communications between provide security support. SSL Protocol can be divided into two layers: SSL Record Protocol (SSL Protocol) : it establish Record in reliable transfer Protocol (such as TCP) above, for high-rise protocols that provide the data package, compression, encryption basic function such as support. SSL Protocol Handshake Handshake agreement (SSL) : it is based in SSL record above used in actual agreement before the start of the data transmission, telecommunications identity authentication, the parties hereto negotiate encryption algorithm, exchange encryption keys, etc.
VPN introduces
VPN(Virtual Private Network) we can take it as a virtual out of understanding enterprise internal special line. It can through the special encrypted communication protocols of the Internet on the connection in the different places of the between two or more Intranet to build a proprietary lines of communication is analogous to set up a special line the same, but it doesn't need to really laid the physical lines such as fiber optic cable. This is like to apply for special line, but no service to the charge, also laying lines without buying router etc hardware devices. VPN technology were router has one of the most important technologies, currently in switches, firewall equipment or Windows 2000 software also support VPN function, in a word, the core of the VPN using public network is established in virtual private network.
Virtual private network (VPN) is defined as through a public network (usually Internet) to establish a temporary, safety of connections, is a path through the chaos safe and stable public network of tunnels. Virtual private network is to enterprise company branch, business partners and suppliers with company Intranet establish reliable safety connection, and ensure the safety of data transmission.
Virtual private network can be used for growing mobile users global Internet access, in order to achieve safety connection; Can be used to achieve enterprise web site secure communications between virtual private line, used for economic effectively connected to commercial partners and the safety of users outside networking virtual private network. Below we combining site about cisco and Microsoft about VPN articles introduce this aspect of information, more abundant related aspects we will later day added.
In view of the different user requirements, VPN has three solutions: remote Access this (Access VPN), the enterprise internal this (Intranet VPN) and enterprises expand this (Extranet VPN), the three types of VPN respectively with the traditional remote Access network, enterprise internal Intranet and enterprise nets and related partnership enterprise nets that form the Extranet (external expansion) corresponds.
At present many units are facing this challenge: branch, dealers, partners and customers and away on business personnel demand immediate after public nets visit our resources, these resources include: the company's internal material, office OA, ERP system, CRM system, project management system, etc. Now many company IPSec VPN to ensure through use of corporate and branches and mobile staff safety connection between.
For many IPSec VPN users, IPSec VPN solutions of high cost and complex structure is very headache. Exist the fact that, in deploy and use software and hardware client, need a lot of evaluation, deployment, training, upgrades and support, for users, these whether in economic and technology is a great burden, the remote solutions and expensive internal application combined to any IT professionals, IT is a serious challenge. IPSec VPN due to the above limitations, a lot of enterprises are think IPSec VPN is a high cost and the complex degree high, even a cannot the implementation scheme. To remain competitive, eliminate the enterprise internal information island, many companies need with related enterprise in different between individuals and organizations to deliver a message, so many companies need to find an implementation is simple, do not need to change the existing network structure, operation cost is low solutions.
Thanks for this awesome introduction about ssl vpn. I learn a lot with the help of this article about this security concept. I will refer the link to this article to all my friends as we all are studying about it.
ReplyDeletedigital certificates