:SearchEnterpriseLinux: The 'No-configuration, Only-Active-When-Needed' SSH VPN
SearchEnterpriseLinux: The 'No-configuration, Only-Active-When-Needed' SSH VPN May 7, 2004, 10 :00 UTC (0 Talkback[s]) (7115 reads) (Other stories by Tony Mancill)
"I work at a company where some Web proxy servers are required to comply with externally-defined security standards. Specifically, these systems aren't allowed to initiate network connections from the DMZ towards the inside. Now, strictly speaking, this isn't entirely true. These systems do access systems on the inside, but only systems explicitly germane to the applications they support.
"From a security perspective, this is a Good Thing. But for the administrators of these systems, it presents a bit of quandary. We need a mechanism to install security updates and other software on these boxes from time to time..."