VMware VCM 5.3 - TRANSPORT LAYER SECURITY IMPLEMENTATION Manual de usuario Pagina 4

  • Descarga
  • Añadir a mis manuales
  • Imprimir
  • Pagina
    / 34
  • Tabla de contenidos
  • MARCADORES
  • Valorado. / 5. Basado en revisión del cliente
Vista de pagina 3
TLS Implementation for VCM
TECHNICAL WHITE PAPER / 4
Introduction to TLS
Transport Layer Security (TLS) and its predecessor, Secure Sockets Layer (SSL), are cryptographic protocols that
provide endpoint authentication and secure communications over any transport. TLS is normally associated with
Internet communication but can be applied to any transport layer, including sockets and HTTP. TLS allows for two
levels of security: Server Authentication and Mutual Authentication.
Server Authentication
Server Authentication authenticates the server to the client. When server authentication is used, the end user, or
client, verifies that the server they are communicating with is actually who it says that it is. In the Internet world, your
browser is the client, and a website such as Amazon is the server. Millions of clients need to be able to prove that
the site to which they are giving financial information is really Amazon™.
To accomplish this using TLS, Amazon provides a certificate issued by a trusted authority, such as Verisign®. If
your browser has the Verisign® Certification Authority certificate in its trusted store, it can trust that the server really is
Amazon™. Typically, the server authenticates the client/user by asking for authentication information, such as a user
name and password.
VCM supports Server Authentication. That is, in VCM environments where TLS is employed, VCM Agents are able to
verify the identity of the VCM Collector (or Collectors) through the use and verification of certificates. A description of
this process is provided later in this paper.
Mutual Authentication
Mutual Authentication authenticates the server to the client, and the client to the server. When Mutual Authentication
is used, both the client and the server provide and validate certificates in order to verify each other’s identity.
VCM is Mutual Authentication ready. This means that Agent certificates can be manually created and registered to
create a Mutual Authentication environment. However, VCM does not support this mode out-of-the-box, or supply any
functionality to aid in the administration of Agent Certificates. Contact VMware Customer Support for instructions.
Vista de pagina 3
1 2 3 4 5 6 7 8 9 ... 33 34

Comentarios a estos manuales

Sin comentarios