[ale] Wrong ideas

Zyman, Andy zymana at hra.nyc.gov
Mon Jul 7 09:48:39 EDT 2003


Gentlemen,
I hope you all had a sunny weekend and now seat very straight in your chairs
;). 

here is a simple question for you :

hostA ( web browser is a client ) calls for www.hostC.net -----> firewall
(allows to connect only to external port 80) --> call goes to  ---> hostB:80
{there is 
	
smth which will 
	
redirect call } ------> to www.hostC.net 

limitations and reqs:
1. traffic between hostA and hostB has to be encrypted. Not only the data
information, but urls ( such as www.hostC.net in my example ) too.
2. all cookies and passwords has to be preserved, so application will be
fully functional.
3. Ideally, user from hostA should be able to work not only with hostC, but
establish connections with any other host.

Long time ago i used "proxy browsing". But it was long-loooong time ago, it
was slow and very inconvenient. I'm also not sure if it allow(ed) me to
work/preserve session sensitive information

Now about encryption.. Main concern here is how difficult would it be to
brake it? Let's say if malicious sysadmin :) will put sniffer on hostA.

what system requirements such "schema" might have?

Yes, almost forgot - it should be platform independent on "HOSTA" side. on
hostB - linux is the choice.

will greatly appreciate your thoughts.
AZ
_______________________________________________
Ale mailing list
Ale at ale.org
http://www.ale.org/mailman/listinfo/ale





More information about the Ale mailing list