Upcoming Events

Executive conference

Cloud Connect March 16-18

Comprehensive thought leadership for executives, IT professionals and developers. Topics include: the ROI, cost and economics of on-demand computing; Migration strategies to move from on-premise to cloud-based IT; Vertical cloud specialization, tailoring features and architectures to specific applications, industries, and customer ecosystems

More Events »

Subscribe to Newsletter

  • Keep up with all of the latest news and analysis on the fast-moving IT industry with Network Computing newsletters.
Sign Up
Mobile & Wireless Technology
F E A T U R E  
Tutorial: Wireless Security

  January 22, 2001
  By Mike Fratto



Wireless VPN

There are cases where WTLS won't work well for you. If you don't have a WAP gateway or if you have to support mobile users who don't have a WAP/WTLS microbrowser, you're out of luck. Wireless VPN is restricted to handheld devices such as Palm Pilots because cell phones don't have the horsepower or memory to run VPN software. The success of PDA-based VPN clients largely depends on the ease of use and VPN efficiencies that can be achieved on low-powered PDAs.

Certicom is coming to market with a VPN client for the Palm, and a freeware version of Top Gun SSH for Palm Pilot can be found at http://www.ai/~iang/TGssh/. We spent a lot of time working with both the Certicom IPsec client and Top Gun SSHand and think these two programs provide excellent ways to secure traffic from a Palm Pilot and home network.

Considering the cost of purchasing and installing VPN gateways, it makes sense to use the VPN gateway for as many applications as possible. Certicom's full-featured VPN client interoperates with the Cisco 3000 series of VPN concentrators, Check Point Software Technogies' VPN-1 Gateway and Nortel's Contivity. During testing we used a Cisco 3000. The beta we tested didn't support all the features we might have employed, such as certificate support or split tunneling, but we were able to connect to the gateway using preshared secret IKE and tunnel mode IPsec. Given that the Palm Pilot doesn't have the most powerful CPU on the planet, we found little difference between encrypted and non-encrypted traffic for most operations. The best modem connection we received was 14.4 Kbps, probably due to the slow performance rather than the VPN cryptography. The only bottleneck we came across was in the initial IKE negotiation because of the processing power required to generate keys.

For terminal emulation security, TopGun SSH is a viable option, even on wireless connections. After we installed Top Gun, we dialed up our remote-access server and initiated our connection. After a few seconds, the SSH negotiation completed and brought up a terminal window that could run commands through a Unix shell account. While this worked well for command-line operations, we couldn't secure other network traffic such as HTTP or e-mail coming from the Palm Pilot.

Send your comments on this article to Mike Fratto at mfratto@nwc.com.


   Page: 1 | 2 | First Page

Best of the Web

Data deduplication: Declawing the clones

Data deduplication is emerging as a critically important new arrow in the storage administrator's quiver to answer hard questions about the increasing problem in storage growth costs.

Quick Read

Compression, Encryption, Deduplication, and Replication: Strange Bedfellows

One of the great ironies of storage technology is the inverse relationship between efficiency and security: Adding performance or reducing storage requirements almost always results in reducing the confidentiality, integrity, or availability of a system.

Quick Read

WAN Optimization Whitelists and Blacklists

Optimization is a fantastic way of saving money and creating really happy customers at the same time, but it doesn't work flawlessly for all applications.

Quick Read

WAN Optimization as a Managed Service: It's Not About the Cost

This insight examines how organizations outsourcing their WAN optimization initiatives to a third-party go about achieving their goals for application performance, reducing operational costs, and streamlining enterprise infrastructure.

Quick Read

  Sponsored Links

Premium Content

Data Centers Gone Wild
February 22, 2010

NWC


Salary

Video