Home » Archive

Articles tagged with: vpn

25 May 2011 | Doug McKillip | No Comments | 925 views | Categories: Cisco, Technology
Datagram Transport Layer Service — DTLS

This week’s post highlights some of the features and implementation specifics regarding the Datagram Transport Layer Service (DTLS) protocol used in Virtual Private Networks with the Cisco AnyConnect® SSL client. I’ll provide some background as well as some screenshots and supported CLI commands.

5 May 2011 | Doug McKillip | No Comments | 435 views | Categories: Cisco, Technology
XAUTH Hybrid Mode – Dissected

Within a few years after Cisco acquired the original VPN Concentrator from Altiga Networks, a noted improvement was made in the way IPSec remote access VPN clients initiated connections. This improvement was named “Hybrid Mode Authentication” on the concentrator but is supported using the “Mutual Group Authentication” radio button on the connection entry screen on the Cisco IPSec client. We’ll briefly examine the motivation for this improvement, outline the mechanism and how it differs from the earlier “preshared key only” mode, and finally show where it’s configured on the ASA.

3 Mar 2011 | Doug McKillip | No Comments | 651 views | Categories: ASA Appliance, Cisco, Technology
VPN Single Sign On and the new Global Knowledge ASA Essentials Class

This article is the last in a three-part series that highlights some of the topics covered in the new Global Knowledge ASA Essentials class, an offering intended to provide the student key areas of interest for initially provisioning their security appliance. This article will focus on single sign-on (SSO) in Virtual Private Networks.

11 Feb 2011 | Doug McKillip | No Comments | 778 views | Categories: ASA Appliance, Cisco, Technology
VPN Failover and the new Global Knowledge ASA Essentials Class

This post is the first in a three-part series that highlights some of the topics covered in the new Global Knowledge ASA Essentials class, an offering intended to provide the student the key areas of interest for initially provisioning their security appliance. This post focuses on high availability for VPN traffic.

28 Jan 2011 | Doug McKillip | No Comments | 868 views | Categories: ASA Appliance, Cisco, Security, Technology
AnyConnect® Secure Mobility Client version 3.0, a Product for the Future

This week’s post came at the (unknown to him!) encouragement from another Cisco instructor who mentioned that this product was available for download from Cisco Connection Online (CCO). The phrase in the title above “product for the future” is my own choice of words and certainly not any marketing language from Cisco Systems.

15 Dec 2010 | Brad Werner | No Comments | 476 views | Categories: Microsoft, Technology, Windows Server
DirectAccess: A VPN, but Not

Windows NT 4.0 included an implementation of the Point to Point Tunneling Protocol (PPTP) for both the NT4 Workstation and NT4 Server products, with a client for Windows 95 OSR2, and PPTP is still supported in Windows and other operating systems. Virtual Private Networking (VPN) technologies have evolved since then. In fact, could they have […]

2 Dec 2010 | Doug McKillip | No Comments | 402 views | Categories: ASA Appliance, Cisco, Technology
HTTP Form Authentication

Back in September I wrote an post on Double Authentication in which I noted that I would elaborate on the HTTP Form Authentication method menu option at a later date. This post gives an overview of both its mechanism as well as its use by Cisco ASA security appliances. One reason why a network administrator […]

24 Nov 2010 | Doug McKillip | No Comments | 519 views | Categories: Cisco, Routing & Switching, Security, Technology, VPN

A relatively new feature on the Cisco Router IOS® (introduced in version 12.4(9)T) finally supports NAT transparency with IPSec VPNs using Tunnel Control Protocol (TCP). This option has long been available on the VPN concentrator platform and was first implemented on the ASA and PIX platforms in operating system version 7.0. This post highlights the […]

28 Oct 2010 | Doug McKillip | One Comment | 284 views | Categories: ASA Appliance, Cisco, Security, Technology

Many of the students that attend the Cisco MARS classes I teach must comply with an increasing number of regulations for security practices.  Not least among these is the set of requirements known as the Payment Card Industry Digital Security Standard (PCI DSS).  One such requirement in the newer version of this standard is referenced […]

21 Oct 2010 | Robert Long | No Comments | 4,921 views | Categories: Security, Technology, Unified Communications
Enabling UC Teleworkers

Unified Communications (UC) systems have done a lot to enable teleworking.  While physically located at someone’s residence, an IP phone can be logically connected to the corporate network and therefore place and receive calls as it were in the office.  Some organizations are able to obtain quantity discounts which make it possible to have MPLS […]