Motorola 49901 Instruction Manual - Page 33

Frame Relay and X.25 Encryption, Frame Relay and, X.25 Networks, Security Features

Page 33 highlights

Target Applications Frame Relay and X.25 Encryption Frame Relay and X.25 Networks Another value-added feature in Vanguard Managed Solutions VPN implementation is the ability to encrypt LAN traffic and serial legacy protocols (SNA, SDLC, SLAC, and TBOP) and tunnel them over Frame Relay and X.25 networks. This is particularly useful in the financial industry where SNA traffic going out into the branches and ATM machines require a high level of security. This implementation also uses DES, Triple-DES (112-bit) for encryption and VanguardMS Proprietary SAM key exchange protocol to negotiate the keys. Vanguard 340 with VPN Frame Relay Vanguard 340 with VPN Protected Subnet Internet Protected Subnet Figure 1-2. Encryption over IP, Frame Relay, and X.25 Networks Security Features The security features in Vanguard Applications Ware release 5.5 and greater also include Firewall functionality based on IP Packet Filtering. Access Control Lists can be configured based on a combination of source and destination addresses. IP Protocol, TCP/UDP source and destination port numbers/ranges, and interface numbers. A feature called Cypher Block Chaining prevents repeated patterns in Plaintext from appearing as repeated patterns in Cyphertext, thus making it harder for hackers to find traffic patterns. About the Vanguard 340 and 340 Enhanced 1-13

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121

About the Vanguard 340 and 340 Enhanced
1-13
Target Applications
Frame Relay and X.25 Encryption
Frame Relay and
X.25 Networks
Another value-added feature in Vanguard Managed Solutions VPN implementation
is the ability to encrypt LAN traffic and serial legacy protocols (SNA, SDLC, SLAC,
and TBOP) and tunnel them over Frame Relay and X.25 networks. This is
particularly useful in the financial industry where SNA traffic going out into the
branches and ATM machines require a high level of security. This implementation
also uses DES, Triple-DES (112-bit) for encryption and VanguardMS Proprietary
SAM key exchange protocol to negotiate the keys.
Figure 1-2. Encryption over IP, Frame Relay, and X.25 Networks
Security Features
The security features in Vanguard Applications Ware release 5.5 and greater also
include Firewall functionality based on IP Packet Filtering. Access Control Lists can
be configured based on a combination of source and destination addresses. IP
Protocol, TCP/UDP source and destination port numbers/ranges, and interface
numbers. A feature called Cypher Block Chaining prevents repeated patterns in
Plaintext from appearing as repeated patterns in Cyphertext, thus making it harder
for hackers to find traffic patterns.
Protected
Subnet
Protected
Subnet
Vanguard 340
with VPN
Vanguard 340
with VPN
Frame
Internet
Relay