E-Mail: webmaster@jawed.co.in
 
welcome to www.jawed.co.in
All the content/s are collected from the search engines and/or free resources. Please read disclaimer before using/downloading any content/stuffs or whatsoover.
All Logo/s,Trade Mark/s,Stuff/s,Content/s,Material/s,Software/s are property of their respective owner
For any query please contact at webmaster@jawed.co.in


SocialTwist Tell-a-Friend
Jawed on Twitter
jawed on Facebook
What types or authentication can a Windows 2003 based RRAS work with?
The
previous article in this series discussed improvements made to IPSec in
Windows Server 2003. This article expands on this topic with an examination
of the security-related enhancements made in Routing and Remote Access Service
(RRAS) and Internet Authentication Service (IAS), specifically:• Support for
L2TP/IPSec over NAT • Network Access Quarantine • NetBIOS-related enhancements
• EAP-TLS improvements • Improved remote access client support • IAS Proxy RRAS
was introduced as a built-in component in Windows 2000 Server (but it is also
available as an add-on for Windows NT 4.0 Server). As its name indicates,
it combines routing and remote access functionality into a single administrative
interface, allowing the server to be turned into a secure, software-based router
or a remote access server, or both. IAS (which first appeared in
Windows 2000 server) is Microsoft's implementation of Remote Authentication
Dial-In User Service (RADIUS), and its primary purpose is to provide authentication,
authorization, and accounting functionality for remote access. Because of its role,
it closely interacts with RRAS. Hence, this article describes both. Windows 2003
RRAS has a number of new, nonsecurity-related features. It supports Point-to-
Point Protocol over Ethernet (PPPoE), reflecting the growing popularity of broadband communication. It can also function as a bridge, combining separate, mixed media segments into a single networking subnet. What might also be a bit of surprise is the dependency between RRAS and Internet Connection Firewall (ICF), since this component was not available in Windows 2000.
Like its Windows XP equivalent, the new version of ICF operates as a stateful firewall (intended for protecting Internet Connection Sharing), which means it tracks sessions initiated from the internal network and, by default, permits inbound traffic only if it constitutes part of these sessions. In addition, ICF selectively permits incoming traffic based on the targeted port and redirects it to any of internal IP addresses (on the same or a different port). Since the same functionality can be provided by RRAS (configurable from the NAT/Basic firewall tab of the interface properties dialog box in IP Routing node of the Routing and Remote Access MMC console snap-in), Microsoft decided to make them mutually exclusive. However, ICF must be disabled to activate RRAS to take full advantage of the security-related features detailed below.

How does SSL work?
SSL stands for “ Secure Sockets layer “ Socute is a technical term that referes to anapplication programming interface or API which that refers to an application prograaming interface or API which is used to communicate b/w to computer Layer refers to the level or layer of this communication b/w the computer. Though it is good to answer the "How does SSL work?" question (see the steps on the following pages) the typical merchant really needs to only be concerned with how to get a secure certificate and making sure that he/she is using a valid and current ssl certificate (
step 2.03) and what URL to use when creating secure links. SSL certificates are purchased from various certificate vendors and it requires a CSR (Certificate Signing Request) to be generated
on the web server. This usually involves getting in touch with the hosting company and asking them to generate the CSR for you. After your receive the CSR (which looks like an encrypted block of undecipherable text) you can order your certificate from the SSL certificate provider. Once you receive the SSL certifcate back from the certificate authority,you will normally need the hosting company to install it for you.