[geeks] VPN Help needed...

Mark md.benson at gmail.com
Thu Jan 3 15:21:08 CST 2008


On 3 Jan 2008, at 18:28, Dan Sikorski wrote:

> Phil Stracchino wrote:
>> Actually, this *is* a problem with many third-party VPN solutions,
>> including some used by some major corporations -- you can access the
>> corporate network of the public Internet, but not both at once.   
>> Using
>> browser proxy configuration combined with an SSH tunnel, it'll be
>> totally transparent and Just Work.
>>
>>
> Based on the original poster saying that he needs minimal setup on the
> client machines, why not just use HTTPS?  That way you avoid remote
> clients having access to the network, they only have access to what  
> they
> need, and the only client setup necessary is giving them a URL.  Or  
> did
> I miss something in the original post (i read it quickly and deleted  
> it)
> that makes this impossible?

I think I stated in the original post I didn't want a web server  
hanging out in the cloud from this machine. Security is paramount, to  
the point of paranoia.

I prefer a tunneling approach, as it is explicitly key authenticated,  
and it's something less people look for when sweeping ports.

I need to rig up a test, however. Is there any way I can do it  
internally?

Also, though Geoffery's instructions are a great start does anyone  
have a link to a more comprehensive guide for Windows -> Windows SSH  
Tunneling? I have the SSH Server running ok on a Windows box at work,  
but cannot get the proxy side/client working right atm.

Thanks for all your help with this. I really appreciate it all.


-- 
Mark Benson

My Blog:
<http://mdblog.68kmac.org>
68kMac.org:
<http://www.68kmac.org>
Visit my Homepage: <http://homepage.mac.com/markbenson>

"Never send a human to do a machine's job..."



More information about the geeks mailing list