[ale] Wrong ideas
Zyman, Andy
zymana at hra.nyc.gov
Mon Jul 7 09:48:39 EDT 2003
Gentlemen,
I hope you all had a sunny weekend and now seat very straight in your chairs
;).
here is a simple question for you :
hostA ( web browser is a client ) calls for www.hostC.net -----> firewall
(allows to connect only to external port 80) --> call goes to ---> hostB:80
{there is
smth which will
redirect call } ------> to www.hostC.net
limitations and reqs:
1. traffic between hostA and hostB has to be encrypted. Not only the data
information, but urls ( such as www.hostC.net in my example ) too.
2. all cookies and passwords has to be preserved, so application will be
fully functional.
3. Ideally, user from hostA should be able to work not only with hostC, but
establish connections with any other host.
Long time ago i used "proxy browsing". But it was long-loooong time ago, it
was slow and very inconvenient. I'm also not sure if it allow(ed) me to
work/preserve session sensitive information
Now about encryption.. Main concern here is how difficult would it be to
brake it? Let's say if malicious sysadmin :) will put sniffer on hostA.
what system requirements such "schema" might have?
Yes, almost forgot - it should be platform independent on "HOSTA" side. on
hostB - linux is the choice.
will greatly appreciate your thoughts.
AZ
_______________________________________________
Ale mailing list
Ale at ale.org
http://www.ale.org/mailman/listinfo/ale
More information about the Ale
mailing list