VPN handshake hacki...
 
Notifications
Clear all

VPN handshake hacking

5 Posts
3 Users
0 Reactions
797 Views
RolfGutmann
(@rolfgutmann)
Noble Member
Joined: 10 years ago
Posts: 1185
Topic starter  

For collaboration with partners we actually develop a new Isolated Secure Network ISN based on highest VPN encryption (tunnel and content). But the tunnel setup is vulnerable at its handshake.

How can we protect against handshake setup hacking?


   
Quote
(@tinybrain)
Reputable Member
Joined: 9 years ago
Posts: 354
 

Your company may consider OpenVPN as the best solution on the market, see an assessment here

https://ostif.org/wp-content/uploads/2017/05/OpenVPN1.2final.pdf


   
ReplyQuote
MDCR
 MDCR
(@mdcr)
Reputable Member
Joined: 15 years ago
Posts: 376
 

Here is another assessment
https://www.cvedetails.com/vulnerability-list/vendor_id-3278/Openvpn.html


   
ReplyQuote
RolfGutmann
(@rolfgutmann)
Noble Member
Joined: 10 years ago
Posts: 1185
Topic starter  

Thank you both.

So, wich VPN is today's most secure?
Have to mention that our budget within LEO is actually for the past years, very limited, we cannot invest in highest secure TPM modules etc.. We also cannot control BGP routing of our CSP.

From my point of view the weakest point is the handshake.

How to secure the handshake?

(We already considered to run it by directional RF-links air-interfaces, but costly, very)


   
ReplyQuote
(@tinybrain)
Reputable Member
Joined: 9 years ago
Posts: 354
 

Security is not for free…

If you consider OpenVPN, read this

http//eprint.iacr.org/2016/798.pdf


   
ReplyQuote
Share: