| A VPN creates ways to stay connected in an increasingly mobile and disparate world. Opening access to sensitive and valuable corporate resources, a VPN makes it extremely important to be able to identify each end of the communications tunnel.
Why do I need enhanced security for VPN?
Out-of-the-box, VPN products offer a username/password combination or shared-secret method of authenticating the participants in a secure channel. These same VPN products also offer integration with enhanced security solutions such as public-key infrastructure (PKI). It is extremely important to take advantage of this integration capability because a simple username/password combination is simply not secure enough to allow an organization to take full advantage of the benefits of VPN.
Using passwords as the method to identify users of a VPN exposes an enterprise to unnecessary risk. Passwords are recognized as insufficient for securing sensitive information because of the following vulnerabilities:
- Passwords are stored on local and network devices and easy to find
- Temptation to use the same password/shared secret across multiple devices increases likelihood of compromise
- Many username/password implementations send the password over the Internet in the clear
- Hackers can easily masquerade as legitimate users from any location
- Readily-available password-hacking tools make passwords easy to crack, but not as easy as the familiar use of post-it notes to affix a password to the machine it is intended to protect
- Implementing shared secrets has the same security limitations as username/ passwords and also creates significant administrative requirements and complexities for VPN administrators
Netrust Secure VPN Solution
Recognizing that passwords are not sufficient to protect the sensitive and valuable corporate resources that need to be accessed via VPN, Netrust's Secure VPN Solution provides identification of users/devices, verification of communications and comprehensive security management of the user/device identities that can increase confidence in your online security.
Enhanced security capabilities from Netrust Net-IDs complement the existing encryption functionality offered by VPN products to provide:
- Increased security: positive identification of VPN users and devices through Netrust NetIDs.
- Lower total cost of ownership: achieve strong authentication of users and security management at up to 50% less than competitive offerings.
- Increased scalability: using Netrust NetIDs for strong authentication of users, VPN security administration can be significantly reduced compared to pre-shared key implementations as well as the use of tokens.
- Ease of use: security functions are transparent and easy to use for the end user and security management tasks are automated for the administrator
- A single security infrastructure for various VPN products: the award-winning Entrust public-key infrastructure is able to provide enhanced security and security identity management to VPN products from Cisco, Nortel and Check Point.
Click here to find out more about Netrust's Secure VPN Solution
|