Prev | Current Page 302 | Next

Jesse Varsalone and Jan Kanclirz Jr.

"Microsoft Forefront Security Administration Guide"


In other words, http://internalservername:80/application will become https://external.
hostname/whalecom/whalecom0/application.
IAG 2007 delivers data over a standard browser for end users to securely access sensitive
information by overlaying industry-standard 128-bit encryption SSL. This prevents
hackers intercepting and reading data. Only one-time authentication or one certifi cate
is necessary, despite the user accessing a number of different published applications
and server resources.
Using Intelligent Application Gateway 2007 ??? Chapter 8 311
To prevent logon credentials or any other information from being cached on managed
or unmanaged devices, IAG 2007 utilizes patent-pending Secure Logoff technology.
This proprietary and innovative mechanism eliminates the possibility of malicious users
reinstating user sessions.
Attachment Wiper
Upon completion of the end user SSL VPN session, the attachment wiper will
remove all traces left on the unmanaged or managed device that was created during
the session. This is triggered by the following:
?–  When a user logs off from the session.
?–  The computer browser is closed down.
?–  The computer browser experiences a crash.
?–  The managed or unmanaged device is shut down.
?–  The session logoff threshold passes.
Upon any of the above occurrences the attachment wiper removes the following:
?–  AutoComplete entries in the computer browser address bar and form fi eld
contents.


Pages:
290 291 292 293 294 295 296 297 298 299 300 301 302 303 304 305 306 307 308 309 310 311 312 313 314