Saturday, 17 March 2012

VPN application requirements

As people conduct more and more daily transactions online, data security issuesbecome crucial. Network frameworks implement protocols addressing a variety ofsecurity related protecting measures, such as internet protocol security (IPSec) (Kentand Atkinson 1998) and Secure socket layer (SSL) (Frier, Karlton and Kocher 1996).Both of these protocols include computation intensive cryptographic algorithms andoperations. In conventional software-only implementations, Web servers and routersare overloaded with demanding IPSec and SSL application requirements, whichresults in long response times. Nowadays, a more promising solution, networksecurity processors (NSPs), has been developed to perform various cryptographicoperations specified by network security protocols and to help to offloadcomputation intensive burdens from network processors (NPs) (Gammage 2001;Chou 2002). To achieve the outstanding performance and high throughput requiredby network protocol applications, a reasonable NSP architecture usually consists ofheterogeneous cryptographic engines, parallel DMA arrays and distributed internal

Thursday, 15 March 2012

Details of ICP-AES Method VPN

where U is the entrainment speed in m/s and η is the dynamic viscosity in Pa s (assuming a lubricant pressure viscosity coefficient of 15 GPa^sup -1^) .To ensure mixed lubrication conditions, an entramment speed of 0.05 m/s was employed for most of the tests, to provide a theoretical initial lambda ratio (ratio of EHD film thickness to composite root mean square roughness) of approximately 0.5 The speed conditions used to obtain the results reported in this paper are summarised in Table I. It can be seen that contra-rotation of the ball and disc enabled a sliding speed of 0.25 m/s to be combined with the required entrainment speed of 0.05 m/s.

Details of ICP-AES Method

The ICP-AES is very widely used to measure the concentration of metals in solution Its key advantages are (1.) it can measure very low concentrations (down to ppb levels) and (2.) it has a multi-element capability, being able of measure up to 40 metals simultaneously. In ICP-AES, a small quantity of metal-containing solution is injected into an argon plasma to reach a temperature of ca. 10000 °K The intensity of light emitted at characteristic wavelengths by the metal atoms at this temperature is then used to quantify the concentration of the metal present.

ICP-AES is routinely used in tribology to measure the metals content of lubricants in operating machinery, both for routine condition monitoring and in post-failure analysis. These are essentially two techniques: direct and indirect In direct methods, the oil sample is diluted with an organic solvent such as methyl-iso-butyl-ketone (MIBK). white spirit or xylene. and then injected into ICP-AES without the other treatment. In indirect methods, the metal is transferred from the oil to an aqueous phase and the latter is analyzed There are various ways of accomplishing this transfer, with different levels of seventy depending on how strongly the metal is held in the oil phase and its particle size These include extraction into acid, microwave heating, high-pressure bomb digestion, and even dry-ashing of the lubricant followed by solution of the ash in water.

A direct measurement from the oil phase is simple and rapid but is generally less sensitive to very low metal levels and also more difficult to calibrate. It is also not suitable for analyzing oils containing large wear particles. Transference of metal from the oil to aqueous phase is time consuming and carries more risk of loss of material or contamination during digestion, but results in a product which can be very reliably analyzed with ICP-AES down to extremely low levels.

hyperchaos image encryption algorithm VPN

According to the chaotic dimension, the chaos-based image encryption algorithms mainly include three types [45-51]: (1) the low-dimensional chaos-based image encryption algorithm; (2) the hyperchaos image encryption algorithm; and (3) the image encryption based on the compound of the other encryption algorithm and chaos.A lot of chaos-based image encryption algorithms use low-dimension chaos as the encryption tools [52,53]. Although these algorithms are simple and effective to some extent, many of them are very disappointing. Some of the reasons are as follows. Firstly, because of the dynamical degradation of chaotic systems in their realization with a digital computer, the security is low. Secondly, some low-dimension chaos-based encryptions have slow performance speeds because of analytical floating-point computations, which make the encryptions infeasible in real time. Moreover, if chaotic systems with simple constructions are directly used to encrypt an image, the useful information can be extracted from the chaotic orbits. To overcome these drawbacks, hyperchaos systems have been proposed to overcome these problems.

Wednesday, 14 March 2012

NAT Before IPSec VPN

NAT Before IPSec
When two sites are connected via IPSec if any of the network address ranges at each site overlap, the tunnel will not establish.
This occurs because it is not possible for the VPN termination devices to determine the site to which to forward the packets.
Utilizing NAT before IPSec overcomes this restriction by translating one set of the overlapping networks into a unique
network address range that will not interfere with the IPSec tunnel establishment. This is the only scenario where theCisco Systems
 
 
application of NAT is recommended. Be aware however that some protocols embed IP addresses in packet data segments.
In general, when address translation occurs, make sure that a protocol-aware device carries out the address translation, not
only in the IP header but also in the data segment of the packet. If the packet was not correctly address translated before it
entered the tunnel due to embedded IP addresses, when the packet exits the tunnel the remote application will not receive
the correct IP address embedded in the data segment. In this case, it is likely that the application will fail to function properly.
Many remote-access VPN clients today support the ability to use a virtual address assigned by the headend terminating VPN
device. Devices at the remote site may connect to the remote access client using this virtual address. This is actually carried
out by one-to-one address translating all packets traversing the tunnel. If the VPN client does not address translate packets
correctly or a new application arrives that is not yet supported, the application may fail to function.
In summary, use address ranges at your sites and remote access VPN client virtual address pools that do not overlap with the
addresses of other devices you will connect via IPSec.  If this is not possible, use NAT only in this scenario to allow for
connectivity. Don't address hide the public peer addresses of the VPN devices as this provides no real security value-add and
may cause connectivity problems. When you believe that NAT is involved and a remote-access client is not able to
successfully establish a tunnel or send packets over an established tunnel, consider enabling the NAT transparency mode.
Finally, be aware that the NAT transparency mode will not resolve the connection problems associated with client
applications that are not NAT friendly.

Monday, 12 March 2012

During the IKE negotiations VPN

During the IKE negotiations, the Lucent IKEmodule receives policy information pertaining to thenetwork, such as the local presence IP address for themachine (i.e., an IP address on the enterprise subnetto be used by the machine while the IPSec tunnel isenabled) and the IP addresses on the enterprise subnet for which traffic from the client should be sentthrough the IPSec tunnel. The Lucent IKE moduleupdates this information on the local machine bymodifying the routing table.For example, assume that the physical IP addressof a client machine is 135.180.144.174 and the IPaddress of an enterprise VPN gateway is 135.180.144.254. Figure 9 shows the IP configuration and the routing table on the client machine after it has established an IPSec tunnel to the VPN gateway. Assumethat the policy that is downloaded specifies that packets destined to subnet IP address/mask 192.168.5.0/24within the enterprise must be sent through the IPSectunnel. A local presence IP address for the VPN clienthas been provided that falls within this enterprise subnet. For this example, assume that this address is192.168.5.10. To accommodate sending the appropriate packets through the IPSec tunnel, a route entryhas been added to the routing table shown in Figure9 that specifies that to reach any IP address in the subnet 192.168.5.0/24, the default gateway at IP address192.168.5.10 (i.e., the local presence IP address) mustbe used.

VPNs AND THE iPAD

Can you get secure connections from a wireless tablet? Yes, you can

While there are plenty of ways to protect your iPad and it's data from ne'er-do-wells, one way is of specific interest to business users: the virtual private network, or VPN.

Out of the box, with no additional software, the iPad supports three kinds of VPNs: Layer 2 tunneling Protocol (L2tP), Point-to-Point tunneling Protocol (PPtP), and Cisco IPSec (that stands for Internet Protocol Security). All three do much the same thing, just in different ways. the kind of VPN you set up on your iPad depends entirely on the kind of VPN that's set up on the network you're connecting to.

The iPad also supports what are known as SSL VPNs, which use the same SSL protocols that Websites use when they want to secure the connection so you can send sensitive data to them, without worrying about someone else sniffing that data for their own purposes. the iPad supports SSL VPNs from Juniper, Cisco, and F5, although you need to download clients for those from the iTunes App Store. You can also create your own custom SSL VPN setup if you want.

SETUP

I can't provide details for every possible VPN setup, but I can explain the setup for Cisco IPSec: It's relatively common, and it's the one I use; you'll follow the same general procedure for any of the others.

Start by going into Settings, and then tap VPN. Select Add VPN Configuration and then IPSec. there, you'll need to fill in a configuration screen with the following details:

> server (the IP Address or DNS name of the VPN router);

> account (also known as a user ID);

> password;

> either a certificate (which will be provided for your iPad by the VPN administrator) or (in a field further down) a Secret (that's VPN-ese for a second password that provides another layer of authentication; unlike your password, a Secret isn't specific to the user); and

> group name (used to assign appropriate access privileges to different types of users; for example, your It group likely has different kinds of access than does a sales team).

Before you go to the trouble of entering all of that manually, check with your It department: It may be able to use Apple's iPhone Configuration Utility to create a configuration profile, which you install on the iPad and which configures the VPN for you.

HOW To USE IT

Once the VPN is set up, using it is simple: When you want to connect to your VPN, you reopen Settings, tap VPN, select the configuration you want to use (if you have more than one), and tap the VPN on/off switch. enter a password (if it isn't already saved in the configuration); a couple of seconds later, you should be connected.

At that point, you can connect to your network and do whatever you need to do, and it should just work. the only visible sign that you're using a VPN at all is the small icon in the upper left corner of the screen. When you're done, go back into the VPN settings and tap the VPN on/off switch, and the VPN connection will be terminated.

If you're using an SSL VPN, you can take advantage of "VPN on demand"; then, you don't even have to turn it on. Whenever you try to access a site or a resource behind the VPN, the VPN will automatically start for you and quit when you're done.

As with so many other things, Apple has done a good job of making some ferocious technology easy to use. Setting up a VPN on the back end may be a truly tedious and annoying process. Connecting to one from an iPad is anything but.

John C. Welch is the IT director for the Zimmerman Agency, and a longtime Mac IT pundit.

VPN Settings The iOS VPN configuration screen is straightforward; you can get the details you need from your IT administrator.

Thursday, 8 March 2012

Free P2P & Torrent VPN

Free P2P & Torrent VPN | Anonymous surfing, p2p, bittorrent | 40 Countries VPN vpntraffic.com

vpn for torrent, vpn for torrent downloading, vpn for torrents, vpn to download torrents, torrent vpn, torrent vpn service, torrent vpn services

VpnTraffic provide Free P2P & Torrent VPN account,unlimited the Traffic,and support P2p,torrent download.Play USA or Korean games aboard, including World of Warcraft.Change your ip address.Unblock censored websites like facebook,twitter,youtube

There have been bans in various countries on downloading torrent and P2P File sharing of movies and songs. Netizens around the world want to have a way out this problem, where they can freely download torrents of their favorite movies, songs, games and software. They opt for various solutions that mostly turn out to be malware. The only suitable solution for it is a VPN connection, which does not only anonymize you on the internet but lets you freely surf the internet and download torrents.