Title :
Enabling VPN and Secure Remote Access using TLS Protocol
Author :
Badra, Mohamad ; Hajjeh, Ibrahim
Author_Institution :
Ecole Nat. Superieure des Telecommun., Paris
Abstract :
Virtual private networks (VPN) technology allows users to remotely access their enterprise networks through a public network such as Internet. To accomplish secure remote accesses to private networks, many security protocols including transport layer security (TLS) have been introduced. TLS is an IETF standard allowing secure channels between two applications conversing over the Internet as well as over wireless networks. However, using TLS with VPN is limited to web-based applications due to the fact that TLS cannot multiplex application data over a single TLS session. Therefore, actual VPN based-TLS solutions use multiplexing with HTTP encapsulation and they are consequently limited to applications running over reliable transport protocols such as TCP. Hence, streaming and sensitive data (voice and video) will not be able to perfectly running with existing VPN solution since exchanging streaming data over reliable transport protocols reduces application performances. In this paper, we extend TLS with a new extension providing application multiplexing/demultiplexing through a single TLS session. The extension use is backward-compatible with existing TLS implementations and it is designed to be deployed over reliable transport protocols using TLS as long as over unreliable transport protocols using datagram TLS (DTLS)
Keywords :
Internet; business communication; demultiplexing; hypermedia; multiplexing; radio networks; telecommunication network reliability; telecommunication security; transport protocols; virtual private networks; wireless channels; HTTP encapsulation; IETF standard; Internet; TLS protocol; VPN technology; channel security; demultiplexing; enterprise network; hypertext transfer protocol; multiplexing; remote access security; transport layer security; transport protocol reliability; virtual private network; wireless network; Access protocols; Authentication; Data security; Home automation; IP networks; Information security; Protection; Streaming media; Transport protocols; Virtual private networks;
Conference_Titel :
Wireless and Mobile Computing, Networking and Communications, 2006. (WiMob'2006). IEEE International Conference on
Conference_Location :
Montreal, Que.
Print_ISBN :
1-4244-0494-0
DOI :
10.1109/WIMOB.2006.1696366