Go Back   PCMech Forums > Help & Discussion > Networking & Online Security

Need Some Help? Type Your Keywords Here:

Reply
 
LinkBack Thread Tools Search this Thread Rate Thread Display Modes
Old 01-09-2005, 11:34 AM   #1
Member (5 bit)
 
Join Date: May 2004
Posts: 17
PPTP VPN or SSL anonymizer?

I am looking to use either HotSpot VPN (PPTP based) or Megaproxy VPN
(SSL based) for internet surfing at hotspots and also VOIP over Wi-Fi.

Could someone please comments on the pros/cons of each and which offers
better overall security?

I am planning on using a USB VOIP phone for connection to my laptop
while I am on business travel. Hotels and coffee shops will be my
primary locations, to include free hot spots when available.

The advantages of being able to talk nationwide at low cost is very
appealing, however I need fairly secure communications for discussing
client and patient issues, in private.

What should I do to ensure "bulletproof" security? I mean
anti-eavesdropping but also security of my laptop itself.

I currently surf hotspots via Wi-Fi with the following procedures

- Sygate Firewall active at all times
- AntiVirus software active at all times
- VPN, HotSpotVPN, used at all times
- File Sharing, Print Sharing turned off

** My VPN assigns a new IP to my computer...if I ran the VPN thru an
anonymous proxy server, would that help or hurt security? Is it true
that VOIP behind a VPN is pretty much 100% secure? (aside from Big
Brother, which is not my concern anyway).

Thanks for your help and Happy New Year

Again, the goals are anti-eavesdropping, computer security, and overall
unable-to-identify-me-via-IP/other capability.

thanks
billpritjr is offline   Reply With Quote
Old 01-10-2005, 10:30 AM   #2
Member (8 bit)
 
MichaelS's Avatar
 
Join Date: May 2003
Location: Richmond Hill, Ontario, Canada
Posts: 128
Send a message via ICQ to MichaelS Send a message via MSN to MichaelS Send a message via Yahoo to MichaelS
I've heard that PPTP isn't very secure from a few sources...I can't say much about SSL-based VPNs, because quite honestly, I haven't researched them.

I think your other options are to use an L2TP-based solution (secure), or you could do something similar using SSH2.

When I was in College using the wireless, I was in a similar situation.. maybe a bit worse since it was a campus dedicated to Computer Studies. Anyway, what I did was create a proxy server at home, and used SSH2 to tunnel all my web traffic to the proxy server at home. This worked great as it gave me 256-bit encryption, the only downside was a bit of lag, which may not be acceptable with your VOIP phone depending on how much bandwidth/CPU/memory you have. Just a note, this would only work for HTTP and HTTPS traffic, some VOIP's allow you to use proxy servers, so you have to check if its using HTTP or SOCKS.

Hope this helps

P.S. The rig that I did sounds scary, but its quite easy/painless to setup -- the only thing is that the 'server' would have to be a Linux box, which some aren't comfortable working with.
MichaelS is offline   Reply With Quote
Old 01-10-2005, 03:06 PM   #3
I am, in reality, a moose
Staff
Premium Member
 
mbossman2's Avatar
 
Join Date: Aug 1999
Location: RTP, NC
Posts: 2,441
if your VPN encryption is taking place on the PC (via a VPN IPSec/AES client) then it is encrypted even before it hits the wire (or airwaves). While it is possible that someone could crack your VPN Encryption (given enough time, resources and large enough data sample), it is far more likely that they will eavesdrop on your conversation with the old Ear MkI.

I do what you are talking about quite often for business travel and my company (Fortune 500 networking company) has no problems with this (and in fact uses your exact example: VoIP with PC over an encrypted VPN as an example of the power of the mobile office).

I do recommend straight encrypted VPN in this case (client based NOT clientless like SSL) as the overhead in the client technique is substantially less than the clientless technique and this will be reflected in superior voice quality (less jitter and breakup).
__________________
Veritas Principium Libertas

Traveling Moose

Last edited by mbossman2; 01-10-2005 at 03:11 PM.
mbossman2 is offline   Reply With Quote
Old 01-10-2005, 05:54 PM   #4
Member (10 bit)
 
Airmack's Avatar
 
Join Date: Jul 2002
Location: Ohio
Posts: 521
sorry to crap but is pptp like l2tp? just diff standard?
Airmack is offline   Reply With Quote
Reply

Bookmarks

Still Need Help? Type Your Keywords Here:


Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes Rate This Thread
Rate This Thread:

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is On
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT -5. The time now is 01:03 PM.
Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2012, vBulletin Solutions, Inc.
SEO by vBSEO 3.6.0 PL2