Title :
Distributed weakness in virtual private networks
Author :
Patton, Samuel ; Doss, David ; Yurcik, William
Author_Institution :
Dept. of Appl. Comput. Sci., Illinois State Univ., Normal, IL, USA
Abstract :
The use of virtual private networks is increasing rapidly primarily due to security concerns. As the result of analyzing actual corporate VPN strategies, we identify a common vulnerability we name “distributed weakness in VPNs”. Specifically we describe a simple routing attack that can be launched against VPN tunnel endpoints with significant implications. We close with a solution to protect against exploitation of this vulnerability
Keywords :
authorisation; business communication; network topology; packet switching; telecommunication network routing; telecommunication networks; telecommunication security; transport protocols; IP network; Internet service; VPN tunnel endpoints; coordinated filtering; corporate VPN; corporate firewall; distributed weakness; network security; network topology; routing attack; virtual private networks; Computer science; Computer security; Filters; IP networks; Intelligent networks; Network address translation; Protection; Routing; Testing; Virtual private networks;
Conference_Titel :
Local Computer Networks, 2000. LCN 2000. Proceedings. 25th Annual IEEE Conference on
Conference_Location :
Tampa, FL
Print_ISBN :
0-7695-0912-6
DOI :
10.1109/LCN.2000.891014