Editing
Apoyar Infrastructure Security
Jump to navigation
Jump to search
Warning:
You are not logged in. Your IP address will be publicly visible if you make any edits. If you
log in
or
create an account
, your edits will be attributed to your username, along with other benefits.
Anti-spam check. Do
not
fill this in!
We have 2 ESX host, 1 Disk array these provides access to VM’s We have separate server Vcentre, which is a physical server and provides - management over vpshere - access to VM’s We have firewall called Juniper (2 firewall), if one fails other starts Also we have Clavister, which has same level as Juniper. Clavister has better support for different types of VPN It supports 3 types of VPN - L2TP - IPsec (used to connect customer’s) - OpenVPN Connecting any of Apoyar server ---------------------------------- Weather we are connecting through OpenVPN or L2TP, we always getting through Clavister. For connecting using OpenVPN, we just need AD logins If we are connecting as L2TP user, it uses passphrase If we are connecting from any AWS console VM, it uses certificate Certificates on AWS RMG server ------------------------------- Login to rmg.aws.apoyar • Cd /etc/isakmpd • cd ca • ls ca.crt (this is the certificate authority of mother or father certificate) It is only saved on clavister (one copy) Also on each AWS console machine, its only get compared not sent To see certificates -------------------- • openssl x509 –in ca.crt –text –noout To check local certificate • Cd ../certs/ • openssl x509 –in local.crt –text –noout these certificates contain the information related to • Issuer • Customer • Expiry • DNS
Summary:
Please note that all contributions to Apoyar Wiki may be edited, altered, or removed by other contributors. If you do not want your writing to be edited mercilessly, then do not submit it here.
You are also promising us that you wrote this yourself, or copied it from a public domain or similar free resource (see
Apoyar Wiki:Copyrights
for details).
Do not submit copyrighted work without permission!
Cancel
Editing help
(opens in new window)
Navigation menu
Personal tools
Not logged in
Talk
Contributions
Create account
Log in
Namespaces
Page
Discussion
British English
Views
Read
Edit
View history
More
Search
Navigation
Main page
Apoyar Infrastructure
Active Directory
Recent changes
Random page
Upload file
Tools
What links here
Related changes
Special pages
Page information