| Impressum |
|
ALL
CONTENT IS PROVIDED "AS IS" WITHOUT ANY WARRANTY OF ANY
KIND, EITHER EXPRESS OR IMPLIED. |
Archives
By Subject
http://www.sun.com/solutions/blueprints/browsesubject.html#security
Scripts
and Tools:
http://www.sun.com/solutions/blueprints/tools/index.html
(c)
Joachim.Datko@datko.de
|
OSI |
IP |
IP Filter |
VPN Tunnel |
Kerberos |
Secure |
TCP Wrapper |
SSH |
SSH |
|
|
|---|---|---|---|---|---|---|---|---|---|---|
|
7. Application |
Application |
|
encrypted data |
encrypted data |
Kerberos |
LDAP |
TCP-Connection |
SSH ( sshd ) |
client<-->daemon |
|
|
6. Presentation |
||||||||||
|
5. Session |
||||||||||
|
4. Transport |
TCP / UDP |
Port (PAT) |
TCP / UDP |
SSL |
TCP |
TCP (22) |
TCP (22) |
|||
|
3. Network |
IP |
|
IPsec |
IPTunnel ( IPOrignal ) |
IP |
IP |
IP |
IP |
IP |
|
|
2. Data Link |
|
|
|
|
|
|
|
|
|
|
|
Physical |
Interfaces |
|||||||||
|
|
||||||||||
VPN
Tunnel :
Every network packet is encrypted for transmission
about a unsecure net.
There are many proprietary protocols like
SKIP from Sun Microsystems, developed for building VPN's. In the
feature IPsec will be used. For IPv6 is IPsec the recommended
encryption standard.
|
|
|
|
|
|
|
|
|
|
|
Secure
Shell ( ssh ) www.sun.com/bigadmin/features |
|
|
|
Remote
Computing via SSH Port Tunneling |
|
|
|
Process
Accounting
|
|
|