|
Focus on Microsoft
PPTP versus L2TP and possible attacks Feb 11 2004 07:19PM James D. Stallard (james leafgrove com) (2 replies) Re: PPTP versus L2TP and possible attacks Feb 12 2004 07:55PM Patrick Power (ppower registrypro pro) (2 replies) RE: PPTP versus L2TP and possible attacks Feb 13 2004 05:30PM Zachary Mutrux (zmutrux compumentor org) (1 replies) RE: PPTP versus L2TP and possible attacks Feb 16 2004 04:17PM Laura A. Robinson (larobins bellatlantic net) Re: PPTP versus L2TP and possible attacks Feb 12 2004 09:00PM Susan Bradley, CPA aka Ebitz - SBS Rocks [MVP] (sbradcpa pacbell net) (2 replies) RE: PPTP versus L2TP and possible attacks - what next? Feb 14 2004 09:52PM James D. Stallard (james leafgrove com) Re: PPTP versus L2TP and possible attacks Feb 12 2004 09:30PM Patrick Power (ppower registrypro pro) (1 replies) RE: PPTP versus L2TP and possible attacks Feb 13 2004 11:46PM Zachary Mutrux (zmutrux compumentor org) |
|
|
Privacy Statement |
> 1. Which is the better tunnelling protocol in terms of security and
> functionality, L2TP or PPTP, and why?
L2TP is superior simply because there have been a few papers written
about flaws in the PPTP protocol which weaken its effectiveness
severely. If possible, it would be best to disable PPTP completely and
use L2TP exclusively.
> 2. Is the community aware of any exploits that could be levelled against the
> firewall with the following ports opened to support VPNs?
>
> L2TP requires: Protocol 50, UDP 4500, UDP 500
> PPTP requires: Protocol 47, TCP 1723
That depends. Is the following your firewall?
> ------------------------------------------------------------------------
---
> Free trial: Astaro Security Linux -- firewall with Spam/Virus Protection
>
> Protect your network with the comprehensive security solution that
> integrates six applications for ease of use and lower TCO.
>
> Firewall - Virus protection - Spam protection - URL blocking - VPN
> - Wireless security.
>
> Download 30-day evaluation at:
> http://www.astaro.com/php/contact/securityfocus.php
> ------------------------------------------------------------------------
---
If so, then there are no known exploits which use those attack vectors.
--
Chris Gianelloni
Systems Administrator
IT Infrastructure and Support Lead
Conso International
(864) 427-9004 x 2748
[ reply ]