Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Firewall Wizards: Re: question on securing out-of-band management (ver. 2)

Re: question on securing out-of-band management (ver. 2)

From: Dave Piscitello <dave_at_corecom.com>
Date: Thu, 09 Feb 2006 13:06:23 -0500

golovast wrote:
>> If the appliance is essentially an SSL proxy, the problem is that the traffic
>> between the appliance and the servers is not encrypted.

I must have been half-asleep when I first read this.

Some SSL proxy implementations (VPN appliances) allow you to chain SSL
traffic:

- user negotiates and uses SSL to the proxy
- proxy negotiates and uses SSL to servers

VOIP also uses this technique to protect SIP from UA to proxy servers
and from proxy to proxy across SIP domains.

_______________________________________________
firewall-wizards mailing list
firewall-wizards_at_honor.icsalabs.com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards

Received on Feb 15 2006
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]
edgeos