123ArticleOnline Logo
Welcome to 123ArticleOnline.com!
ALL >> Business >> View Article

Using Security Knowledge To Resolve Connectivity Issues

Profile Picture
By Author: Shirley Green
Total Articles: 129
Comment this article
Facebook ShareTwitter ShareGoogle+ ShareTwitter Share

I often have the pleasure of introducing consultants to the mysteries of PKI. It's a subject I like talking about 70-291, and it's also great to be able to solve a problem in five minutes that the communications consultant has been working on for hours or perhaps days. Sometimes I am contracted to solve the problem, and sometimes I answer an inquiry from a reader. The latter was the case in this example. In this example, the problem concerned VPN connections between three sites of the same company. The problem is similar to one you will have to solve when dealing with communications between multiple organizations.
I was told that all three sites used exactly the same hardware and software and were configured in exactly the same manner by local administrators using a centrally prepared instruction sheet. All three sites were part of the same company, but one site had been acquired six months previously. The purpose of the con?nection was to create a site-to-site demand-dial VPN between all three sites using L2TP/IPSec as the communications protocol. The reader told me that the site-to-site ...
... demand-dial VPN between Sites A and B was working just fine, but neither A nor B were able to establish demand-dial connectivity with Site C. This information, plus the requirement for free MCSE PDF questions, was my first indication that the problem was trust related. I told the reader to switch to PPTP and see whether the VPN could be connected. He did, and it was. Here's how I explained why the solution worked.
When L2TP/IPSec is used to secure VPN traffic, both peers (computers on either side of a communication) must be able to present a certificate that the other peer can validate. Each computer sends to its peer a list of the root CAs that it has machine certificates from. If the peer trusts one of the CAs listed, it should be able to validate the certificate presented by its peer. If it trusts none of them, the con?nection cannot be negotiated. When the reader questioned the administrator at Site 3, he found that the site had its own CA hierarchy. He then examined the trusted root CA certificates in the certificate stores of Routerl and Router2 and found, not surprisingly, neither router had a copy of the Site 3 root CA. By sub?stituting PPTP for the VPN protocol, the need for certificates was removed. A better free MCITP PDF questions would have been to develop a trust relationship based on the PKI infrastructure that was present, and that's just what we did next

Total Views: 372Word Count: 431See All articles From Author

Add Comment

Business Articles

1. Lucintel Forecasts The Global Disposable Toothbrush Market To Grow With A Cagr Of 4.5% From 2024 To 2031
Author: Lucintel LLC

2. Lucintel Forecasts The Global Disposable Razor Blade Market To Grow With A Cagr Of 5.2% From 2024 To 2031
Author: Lucintel LLC

3. Lucintel Forecasts The Global Diaper Market To Grow With A Cagr Of 7.1% From 2024 To 2031
Author: Lucintel LLC

4. Lucintel Forecasts The Global Cotton Bud Market To Grow With A Cagr Of 6.2% From 2024 To 2031
Author: Lucintel LLC

5. Commercial Cleaning Services In Dubai – A Complete Guide For Businesses
Author: Facilico

6. Lucintel Forecasts The Global Colour Cosmetic Market To Grow With A Cagr Of 3.8% From 2024 To 2031
Author: Lucintel LLC

7. How Sustainability Scoring Is Used To Compare Esg Performance Across Industries
Author: Synesgy

8. What Makes People Choose Or Reject An Employer?
Author: Akshay Sharma

9. Luxury Travel Stays: A Guide To Elevated Comfort Near Whistler
Author: James Arthur

10. Vacation Home Guide: What To Know Before Booking Your Stay Near Whistler
Author: James Arthur

11. Responsible Bulk Sms Communication In Modern Business
Author: Bulkmsg

12. How To Restore And Polish Tarnished Copper Cookware To Like-new Shine
Author: Copper Brazier

13. Lucintel Forecasts The Global Copper Pipe & Tube Market To Grow With A Cagr Of 13.1% From 2024 To 2031
Author: Lucintel LLC

14. How Credit Delete Geeks Helps Consumers Answer How Can I Fix My Credit Score Effectively
Author: Jennie Smith

15. What Does A Consultancy For Software Testing Do? A Comprehensive Guide
Author: sweta

Login To Account
Login Email:
Password:
Forgot Password?
New User?
Sign Up Newsletter
Email Address: