Datasheet

“main” (Installation and Administration) 2004/6/25 13:29 page xxiii #23
i
i
i
i
i
i
i
i
25.3.4 Starting Squid . . . . . . . . . . . . . . . . . . . . . . . 603
25.3.5 The Configuration File /etc/squid/squid.conf . . . . 605
25.3.6 Configuring a Transparent Proxy . . . . . . . . . . . . 610
25.3.7 cachemgr.cgi . . . . . . . . . . . . . . . . . . . . . . . 613
25.3.8 squidGuard . . . . . . . . . . . . . . . . . . . . . . . . 614
25.3.9 Cache Report Generation with Calamaris . . . . . . . 616
25.3.10 For More Information . . . . . . . . . . . . . . . . . . 617
26 Security in the Network 619
26.1 X.509 Certification with YaST . . . . . . . . . . . . . . . . . . . 620
26.1.1 The Principles of Digital Certification . . . . . . . . . 620
26.1.2 YaST Modules for CA Management . . . . . . . . . . 624
26.2 VPN with SUSE LINUX . . . . . . . . . . . . . . . . . . . . . . 633
26.2.1 Setting up Road Warrior Servers . . . . . . . . . . . . 633
26.2.2 Setting up a VPN Linux Client with FreeS/WAN . . 636
26.2.3 IPsec Clients on Windows XP and Windows 2000 . . 639
26.3 Masquerading and Firewalls . . . . . . . . . . . . . . . . . . . 643
26.3.1 Packet Filtering with iptables . . . . . . . . . . . . . . 643
26.3.2 Masquerading Basics . . . . . . . . . . . . . . . . . . . 646
26.3.3 Firewalling Basics . . . . . . . . . . . . . . . . . . . . 647
26.3.4 SuSEfirewall2 . . . . . . . . . . . . . . . . . . . . . . . 648
26.3.5 For More Information . . . . . . . . . . . . . . . . . . 651
26.4 SSH — Secure Shell, the Safe Alternative . . . . . . . . . . . . 652
26.4.1 The OpenSSH Package . . . . . . . . . . . . . . . . . . 652
26.4.2 The ssh Program . . . . . . . . . . . . . . . . . . . . . 652
26.4.3 scp — Secure Copy . . . . . . . . . . . . . . . . . . . . 653
26.4.4 sftp — Secure File Transfer . . . . . . . . . . . . . . . 653
26.4.5 The SSH Daemon (sshd) — Server-Side . . . . . . . . 654
26.4.6 SSH Authentication Mechanisms . . . . . . . . . . . . 655
26.4.7 X, Authentication and Forwarding Mechanisms . . . 656
26.5 Network Authentication — Kerberos . . . . . . . . . . . . . . 657
26.5.1 Kerberos Terminology . . . . . . . . . . . . . . . . . . 658
xxiii
SUSE LINUX Enterprise Server