Remote Access SSL VPN Stewart Duncan Technical Manager.

Slides:



Advertisements
Similar presentations
What’s New in Fireware XTM v11.3.4
Advertisements

Meraki Mobile Device Management
Setting Up a Virtual Private Network Chapter 9. Learning Objectives Understand the components and essential operations of virtual private networks (VPNs)
SIM403. Claims Provider Trust Relying Party x Relying Party Trust Claims Provider Trust Your ADFS STS Partner ADFS STS & IP Relying Party Trust Partner.
SCSC 455 Computer Security Virtual Private Network (VPN)
Securing Remote Network Access FirePass ®. Business Case VirginiaCORIS is an initiative to modernize the way that offender information is managed, to.
Citrix ® Secure Gateway Phil Montgomery Senior Product Manager Citrix Products and Services October 2001.
© 2009 VMware Inc. All rights reserved VMware Updates Orlando VMware User Group – April 2011 Ryan Johnson VMware, Inc. Technical Account Manager Professional.
Remote Networking Architectures
© 2013 Jones and Bartlett Learning, LLC, an Ascend Learning Company All rights reserved. Security Strategies in Linux Platforms and.
Week #10 Objectives: Remote Access and Mobile Computing Configure Mobile Computer and Device Settings Configure Remote Desktop and Remote Assistance for.
Course 201 – Administration, Content Inspection and SSL VPN
ASA 5505 SSL VPN Joe Cicero Northeast Wisconsin Technical College.
Copyright © 2004 Juniper Networks, Inc. Proprietary and Confidentialwww.juniper.net 1 IPSec or SSL VPN? Decision Criteria.
Clinic Security and Policy Enforcement in Windows Server 2008.
Your storage on the ground; Your files in the cloud.
CHAPTER 2 PCs on the Internet Suraya Alias. The TCP/IP Suite of Protocols Internet applications – client/server applications The client requested data.
Access Gateway Operation
1 FirePass 6.0 Sales Training. 2 Agenda FirePass 6.0 Release Highlights Packaging & Pricing Product Availability Q&A.
MCSE Guide to Microsoft Exchange Server 2003 Administration Chapter Four Configuring Outlook and Outlook Web Access.
©Kwan Sai Kit, All Rights Reserved Windows Small Business Server 2003 Features.
SharePoint Services Indiana University Cory P. Retherford May 9 th, 2011.
Module 8 Configuring Mobile Computing and Remote Access in Windows® 7.
1 Chapter 12: VPN Connectivity in Remote Access Designs Designs That Include VPN Remote Access Essential VPN Remote Access Design Concepts Data Protection.
Name Company A Day in the Life… A Demonstration of Application Delivery.
Remote Desktop Services in Windows Server 2008 R2.
Grid Chemistry System Architecture Overview Akylbek Zhumabayev.
IP Security IP sec IPsec is short for Internet Protocol Security. It was originally created as a part of IPv6, but has been retrofitted into IPv4. It.
Sudarshan Yadav Sr. Program Manager, Microsoft
LGfL Update Stewart Duncan LGfL Technical Manager Ian Lehmann LGfL Operations Manager.
Mr C Johnston ICT Teacher BTEC IT Unit 09 - Lesson 09 Network Services.
Hands-On Microsoft Windows Server Implementing Microsoft Internet Information Services Microsoft Internet Information Services (IIS) –Software included.
"The majority of users in a typical enterprise simply want frequent, location-independent access to a few key applications, such as , calendar and.
Welcome Windows Server 2008 安全功能 -NAP. Network Access Protection in Windows Server 2008.
Integrating and Troubleshooting Citrix Access Gateway.
CRM in Education: Raising Standards. Saving Time. Presented by: Daniel Petersen Director of Business Solutions Applied Tech.
Citrix Secure Gateway v1.1 Customer Presentation Aug 2002 Customer Presentation Aug 2002.
"The majority of users in a typical enterprise simply want frequent, location-independent access to a few key applications, such as , calendar and.
SharePoint in the Education Space Presented by: Daniel Petersen Director of Business Solutions Applied Tech.
SonicWALL SSL-VPN Series Easy Secure Remote Access Cafferata Cristiano SE Italia.
Web Server.
Active Directory. Computers in organizations Computers are linked together for communication and sharing of resources There is always a need to administer.
(ITI310) By Eng. BASSEM ALSAID SESSIONS 10: Internet Information Services (IIS)
 authenticated transmission  secure tunnel over insecure public channel  host to host transmission is typical  service independent WHAT IS NEEDED?
VPN. CONFIDENTIAL Agenda Introduction Types of VPN What are VPN Tokens Types of VPN Tokens RSA How tokens Work How does a user login to VPN using VPN.
Mr C Johnston ICT Teacher BTEC IT Unit 09 - Lesson 09 Network Services.
©2012 Check Point Software Technologies Ltd. [PROTECTED] — All rights reserved. Securing Your Data in Endpoint and Mobile Environments Frank Suijten Security.
SSH. 2 SSH – Secure Shell SSH is a cryptographic protocol – Implemented in software originally for remote login applications – One most popular software.
VIRTUAL SERVERS Chapter 7. 2 OVERVIEW Exchange Server 2003 virtual servers Virtual servers in a clustering environment Creating additional virtual servers.
Virtual Private Network Wo Yan Lam. Overview What is Virtual Private Network Different types of VPN –Remote-Access VPN –Site-to-site VPN Security features.
Virtual Private Network Technology Nikki London COSC 352 March 2, 2010.
Virtual Private Network Access for Remote Networks
Barracuda SSL VPN 2012.
Barracuda SSL VPN Remote, Authenticated Access to Applications and Data.
Barracuda SSL VPN Remote, Authenticated Access to Applications and Data Version 2.6 | July 2014.
CudaLaunch for Barracuda NG Firewall.
Virtual Private Network (VPN)
Self-service enrollment for Windows desktops
IP Security IP sec IPsec is short for Internet Protocol Security. It was originally created as a part of IPv6, but has been retrofitted into IPv4. It works.
3.1 Types of Servers.
Implementing TMG Server Publishing
Welcome To : Group 1 VC Presentation
Utilize Group Policy Terminal Server Settings
Server-to-Client Remote Access and DirectAccess
Check Point Connectra NGX R60
Implementing Client Security on Windows 2000 and Windows XP Level 150
Access eJournals Form Your Home
Cengage Learning: Computer Networking from LANs to WANs
Designing IIS Security (IIS – Internet Information Service)
Securing web applications Externally
Presentation transcript:

Remote Access SSL VPN Stewart Duncan Technical Manager

Why Remote access? Remote access for both teachers and pupils to single schools network and resources Remote access to all school networks for support staff Intra VPN access to all schools networks for support staff. Remote access from public Internet hotspot

Current Issues… Insecure MIPs –152 insecure MIPs from ANY source 50 Remote Desktop (TCP 3389) 64 “Any” service Support –ICT staff spend many days in the year on support for remote access issues using the traditional IPSec client –May have no control over the host PC the user is connecting from –Third parties have to setup site-to-site IPSec VPN for every site they manage Control –No granular level of control of resources users can access

What is SSL VPN? A VPN accessed via HTTPS from any browser (theoretically). SSL VPNs require minimal client configuration

Advantages of SSL VPN Removal of insecure MIPs as no longer required –152 insecure MIPs from ANY source »50 Remote Desktop (TCP 3389) »64 “Any” service Ease of support. Freeing up time for other projects No client management all security policies such as host checking centralised. Host checking enables greater control of what devices are allowed access into the network Granular level of control for users to internal resources Third parties can easily remotely manage sites by a few mouse clicks and no additional software is required No additional databases to manage since authentication can be tied into the existing authentication domains (e.g. Active Directory)

How it works Apps Intranet / Web Server Unix/NFS = Encrypted External Session = Standard Internal Session School Servers Pupil A Directory Store Pupil B Pupils at home Server Farms Teacher A Teacher B Teachers at Home

How do I use this service? The LGfL SSL VPN service is currently being piloted is several Local Authorities So far the pilot has proved to be successful SSL VPN will be available from LGfL, through Synetrix, in the Summer Term

Summary Remote access is a requirement being asked of LGfL more and more Synetrix will be delivering the SSL VPN solution to London schools It be be available in the Summer Term For more information contact Synetrix or option 1) or speak to your Local Authority LGfL