Title :
External authentication approach for virtual private network using LDAP
Author :
Shrivastava, Ashish ; Rizvi, M.A.
Author_Institution :
Dept. of Comput. Eng. & Applic., Nat. Inst. of Tech. Teachers´ Training & Res., Bhopal, India
Abstract :
For protecting the sensitive data from the hackers while transmitting the data OSI model provides security mechanism such as Internet Protocol Security (IPSec) in network layer and Socket Secured Layer (SSL) in transport layer etc. In the data link layer Point to Point Tunneling Protocol (PPTP), which is used to make secure tunnel for exchanging information, is one way to implement the so called VIRTUAL PRIVATE NETWORK (VPN). To enhance the security and reliability of VPN a strong authentication mechanism is required on top of the traditional username and password authentication credentials [1]. In this paper an honest attempt is made to propose procedures to create platform independent two step authentication process in PPTP VPN which is also referred to as External Database Authentication. The advantage of this approach is that user information is stored in a dedicated authentication server which can have a large pool of organized, directory-based user data along with greater robustness and security. Hence this approach proposes to extend the functionality of Lightweight Directory Access Protocol (LDAP) server being located in an organization´s LAN, in order to strengthen the authentication process of PPTP VPN.
Keywords :
access protocols; client-server systems; computer network security; virtual private networks; IPSec; Internet protocol security; LAN; LDAP server; PPTP VPN; SSL; authentication server; data OSI model; data link layer; directory-based user data; external database authentication; hackers; lightweight directory access protocol server; network layer; platform independent two step authentication process; point to point tunneling protocol; security mechanism; sensitive data protection; socket secured layer; strong authentication mechanism; transport layer; user information; username and password authentication credentials; virtual private network; Authentication; IP networks; Internet; Protocols; Servers; Virtual private networks; Client-Server; LDAP; PPTP; VPN; external authentication;
Conference_Titel :
Networks & Soft Computing (ICNSC), 2014 First International Conference on
Conference_Location :
Guntur
Print_ISBN :
978-1-4799-3485-0
DOI :
10.1109/CNSC.2014.6906683