IPSec / SSL VPN, Security

Redundant DMVPN network

René Jorissen on August 20, 2009 0 Comments • Tags: #authenticate #cloud #dmvpn #dual #dynamic #eigrp #hub #isakmp #multicast #multipoint #networkid #nhrp #redundant #resilient #single #spoke #vpn

Today I looked at the configuration DMVPN (Dynamic Multipoint VPN). A Dynamic Multipoint Virtual Private Network is an enhancement of the virtual private network (VPN) configuration process of Cisco IOS-based routers. DMVPN prevents the need for pre-configured (static) IPsec peers in crypto-map configurations and ISAKMP peer statements. This feature of Cisco IOS allows greater scalability … Read More

Security

RSA 7.1 supported under ESX 3.5

René Jorissen on July 23, 2009 7 Comments • Tags: #35 #71 #esx #rsa #support #vmware

More and more people would like to implement OTP (One Time Password) solutions. RSA is one of multiple vendors for OTP solutions. I also notice the wish to implement and support OTP with on-demand tokens, like SMS and e-mail. RSA supports on-demand tokens, but the minimum RSA Authentication Manager version required is 7.1. Not only … Read More

Security

Secure LDAP between Softerra and Novell NDS

René Jorissen on April 22, 2009 0 Comments • Tags: #48 #browser #cert7db #communicator #key3db #ldap #ldaps #nds #netscape #novell #secure #softerra

Softerra LDAP Browser is a powerful tool for browsing servers, which support LDAP. Using Softerra LDAP Browser against a Novell NDS with secure LDAP is a different story. A secure LDAP connection is a connection which uses SSL certificates to encrypt the data stream. I had to use my LDAP Browser to query a Novell … Read More

Management, Security

RSA LDAP query failed

René Jorissen on January 9, 2009 0 Comments • Tags: #ldapsearchsearchfailedcheckbasedn #adfind #basedn #browser #filter #ldap #ldap_search_ssizelimitexceeded #maxpagesize #objectclass #query #rsa #sdaceldap #sdldapsync #securid #softerra

While configuring a LDAP mapping for a RSA Authentication Manager 6.1 with an Active Directory Domain Controller, I received the following error while running the Synchronisation task c:\RSA\prog\sdldapsync.exe -j 102 “[LDAP search] Search failed (check Base DN)” At first I thought about a typo while configuring the Synchronisation task. To test the LDAP connection with … Read More

Security

Cisco 877W wireless authentication failed

René Jorissen on January 6, 2009 1 Comment • Tags: #dot117cckm_auth_failed #aes #authenticate #broadcastkey #cckm #change #failed #interval

At home I have a Cisco 877W router. I use the wireless functionality to connect the different laptops to the networks. After upgrading the software from the router I have problems with the wireless authentication. The router is working perfectly, but after some time the laptops are able to connect to the wireless network. Vista … Read More

Configuration Example, Security

Access rules DMZ components

René Jorissen on January 6, 2009 0 Comments

Finally he first post in 2009, so before starting, HAPPY NEW YEAR!!!!! I know it’s late, but who cares…. This post is about opening specific ports from the DMZ to the internal network. This specific topic often results in discussions about which ports to open. One of the biggest discussion points is the use of … Read More