About
Community
Bad Ideas
Drugs
Ego
Erotica
Fringe
Society
Technology
register | bbs | search | rss | faq | about
meet up | add to del.icio.us | digg it
Go Back   Community > Technology > Network (in)Security
FAQ Members List Calendar Search Today's Posts Mark Forums Read

Network (in)Security Interesting hacks and cracks. Info on firewalls, TCP/IP, encryption, networks, and security. The ins and outs of the phone system, caller services, how things work, what's illegal and what's not, cellular phones, beepers, telephony legislation, the PUC, ISDN, taps, who's listening, and switches. Talking about phones, hacking systems, technical advice, and such is completely LEGAL in the United States -- it's covered by the First Amendment. What's illegal is conspiracy to commit a crime. So if you say something like "Meet me at 2am so we can crack a can" or "I changed my cell phone's number myself" you are criminally liable. Stating "You can crack a can by doing thus-and-so" or "If you wanted to change a cell phone's number, you could do it like so" is perfectly OK. Posting passwords, calling card numbers, or credit card numbers is forbidden on this network. Posting such info will get you booted off the net.

Reply
 
Thread Tools Display Modes
 #1 
Old 2004-12-20, 07:44
skalez skalez is offline
Regular
 
Default Reverse VPN

Prelude: As far as I understand, a VPN is a (un)secured tunnel over a end-to-end connection (e.g. TCP/IP) that serves sort of like a gateway, passing traffic between the two ends transparently. Please correct me if i'm wrong here.

I've read about people (ok, black hats) using reverse-connecting shellcode to bypass firewalls when attacking sites. Wouldn't it be simpler to run a server, local only, and have a generic reverse connecting VPN system set up? This would work like so:

normal VPN:

server listening 0<------- client connects

server's lan <---VPN tunnel---> client's lan

reverse VPN:

server attempting to connect ------------->

server attempting to connect ------------->

server connecting -------->0 client listening

server's lan <---VPN tunnel---> client's lan

I don't know how easily this could be implemented because I don't know of any open source VPNs.

Thoughts?
 #2 
Old 2004-12-20, 07:51
skalez skalez is offline
Regular
 
Default Re: Reverse VPN

Odd, edit post wouldn't accept my password.

Edit: this would also give the added bonus of being able to access the server's normal local-only services or the same services on another server in its lan.
 #3 
Old 2004-12-20, 12:41
jamez jamez is offline
Regular
 
Default Re: Reverse VPN

wtf? why do you want to reverse connect why not just make the client the server?

vpn is pretty secure stop bashing it. it uses encryption and does a good job of being transparent.

the only insecurity is that one of the computer in the route from ur comp to the server (have tracert handy).
 #4 
Old 2004-12-20, 13:12
skalez skalez is offline
Regular
 
Default Re: Reverse VPN

I wasn't intentionally bashing it. I meant that there might be versions of it around that aren't secure.

I see what you mean about make the server the client. Anyone know of open source VPN systems that I can mess with?
 #5 
Old 2004-12-20, 18:40
cense cense is offline
Regular
 
Default Re: Reverse VPN

www.openswan.org (http://www.openswan.org)

check freshmeat (http://freshmeat.net/search/?q=VPN&section=projects&Go.x=15&Go.y=10)

[This message has been edited by cense (edited 12-20-2004).]
 #6 
Old 2004-12-21, 00:00
skalez skalez is offline
Regular
 
Default Re: Reverse VPN

Thanks, I'll look into it.
 
To the best of our knowledge, the text on this page may be freely reproduced and distributed.
 

totse.com certificate signatures
 
 
About | Community | Bad Ideas | Drugs | Ego | Erotica | Fringe | Society | Technology
Hot Topics