iPhone in Business Virtual Private Networks

VPN protocols

  • Cisco IPSec
  • L2TP/IPSec
  • PPTP

Authentication methods

  • Password (MSCHAPv2)
  • RSA SecurID
  • CRYPTOCard
  • X.509 digital certificates
  • Shared secret

VPN Deployment Scenario
The example depicts a typical deployment with a VPN server/concentrator as well as an authentication server controlling access to enterprise network services.

  1. iPhone requests access to network services (typically over a PPP connection).
  2. The VPN server/concentrator receives the request and then passes it to the authentication server.
  3. In a two-factor token environment, the authentication server would then manage a time-synchronized token key generation with the key server. If a certifi cate authentication method is deployed, an identity certifi cate needs to be distributed to iPhone prior to authentication. If a password method is deployed, the authentication process proceeds with user validation.
  4. Once a user is authenticated, the authentication server validates user and group policies.
  5. After user and group policies are validated, the VPN server provides tunneled and encrypted access to network services (typically via IPSec).
  6. If a proxy server is in use, iPhone connects through the proxy server for access to information outside the fi rewall.

Download file here

Random Posts

Leave a Reply