Secure Console Server bei BellEquip. Device Server

BellEquip GmbH
 

CM4000 Secure Desktop Tunneling

CM4000
Secure Desktop Tunneling is an easy to use remote management tool that allows both end users and administrators to securely access and take remote control of any computer running VNC or Microsoft's Remote Desktop. The new tool couples Remote Desktop Protocol (RDP) and the popular VNC with the trusted open source SSH tunneling protocol, to significantly improve productivity and security for companies accessing their remote offices, or remotely accessing their data centers.

Remote access, management and troubleshooting

Opengear’s Secure Desktop Tunneling enables remote users and administrators to securely access Windows, Linux, Mac, AIX, HP-UX, Solaris and UNIX computers. The remote administrator can manage these computers and the data center (remotely upgrading server operating systems, rebooting the machines, viewing BIOS information from booting servers before their OS is loaded etc). The remote user can connect to an office computer and have access to all of the applications, files, and network resources (just as though they were in front of the computer screen at work).

Opengear bundles the Secure Desktop Tunneling tool with its console server and secure device server remote management hardware products. So Opengear's CM4000 desktop and rack-mount appliances now provide secure remote VNC and Remote Desktop access, while also giving administrators the tools to remotely monitor and administer their networks and servers over the console ports. The administrator has the troubleshooting tools to console manage UNIX basedservers; and securely access EMS in Microsoft Windows Server 2003. CM4000 also provides secure out-of-band access; so these remote computers and network appliances can be reconfigured and power cycled, even if the main internet data pathway is down.

Secure SSH Tunnels protect VNC and Remote Desktop

Secure Desktop Tunneling implements SSH tunneling, also known as SSH port forwarding, the process of forwarding selected TCP ports through authenticated and encrypted tunnels. It is generally recognized that while VNC and RDP are secure enough to use on a firewall protected private network, they are not robust enough for use directly over a public network. Secure Desktop Tunneling securely tunnels the VNC and RDP sessions from the remote user through to the CM4000 over any broadband (wireless, ADSL, cable) Internet connection; or over the enterprise private network, or even over a direct dial-up or ISDN modem connection. The CM4000 then forwards these RDP and VNC sessions to the computer being accessed through the local TCP/IP network or through the computer’s serial COM port.

 
 
VNC access generally allows access to the whole computer, so security is imperative. VNC uses a random challenge-response system to provide the basic authentication to connect to a VNC server. This is reasonably secure and the password is not sent over the network. However, once connected, all subsequent VNC traffic is unencrypted. So a malicious user could snoop the VNC session. Also there are VNC scanning programs available, which will scan a subnet looking for PCs which are listening on one of the ports which VNC uses. Similarly security with Microsoft’s Remote Desktop is paramount as anyone who has access to these administrative features can control the server. You can configure Remote Desktop traffic to be all encrypted, however its authentication is weak so it is susceptible to man in the middle (MITM) attacks. The solution is to tunnel all RDP and VNC over a SSH connection, thereby ensuring all traffic is protected by strong authentication and encryption.

No more hostile branch office sites and SMB customer sites

With its Secure Desktop Tunneling and its rich set of console management features, the CM4000 is the solution for off-site administration. No longer do enterprises with large distributed networks and branch offices need to regard their remote locations as hostile environments. Opengear now offers them a secure affordable solution for remote access to these sites, without the complexities of implementing full enterprise wide VPN solutions. The administrators controlling these networks can implement out-of-band remote management of the servers and network devices at these sites, and embrace them within the enterprise managed network (without the prohibitive costs of installing legacy KVM over IP solutions). They can also now administer their enterprise data centers after-hours; with a tool that lets them remotely manage from the application layer, right down through the operating system bring-up and boot level, to hardware reset.

Similarly the VAR/SI support manager now has the tools to help their SMB customers from afar. Opengear enables them to proactively manage the servers, power facilities, network equipment and storage devices at their customers' remote sites. No longer are they limited to being just reactive. And in event of trouble (or disaster) they can offer rich out-of-band recovery facilities (that would usually only be found in a large data center) and save the costs of on site repair. Best of all, they can make money, by offering their customers a truly top quality service package.

 

BellEquip GmbH • Franz Eigl-Straße 8 • 3910 Zwettl • Österreich / Austria • Tel.: +43 (0)2822 33 33 999 • Fax: +43 (0)2822 33 33 995
Mobil: +43 (0)664 33 33 999 • Internet: www.bellequip.at • E_mail: info@bellequip.at

Direkte LINKS zu unseren Produkten

2 Port KVM Switch | 4 Port KVM Switch | 8 Port KVM Switch | 16 Port KVM Switch | USB KVM Switch | DVI KVM Switch | MulitUser KVM Switch | LCD Console KVM Switch | IP based KVM Switch | KVM Console Extender | KVM Converter / Emulatoren | Video Switch | Video Splitter | DVI Video Splitter | Video Extender | CS-62A | CS-62B | CS-62U | CS-88A | CS-142 | CS-521 | CS-522 | CS-1004 | CS-1008 | CS-1016 | CS-1708 | CS-1716 | CS-1732a | CS-1734a | CS-1754 | CS-1758 | CS-1762 | CS-1764 | CS-1772 | CS-1774 | CS-9134 | CS-9138 | CL-1200 | CL-1208 | CL-1216 | CL-1758 | ACS-1208A | ACS-1216A | ACS-1208AL | ACS-1216AL | CN-6000 | CE-220 | CE-250 | CE-252L/R | CE-300 | CE-700 | VE-50 | VS-102 | VS-261 | VS-461 | VS-132 | VS-491 | VS-162 | VS-164 | Aten KVM Switches

bellequip003 X2 | bellequip003 X4 | bellequip003 X8 | bellequip001 | bellequip001/MC2 | bellequip001/MC3 | bellequip001/MC4 | bellequip010 | bellequip002

Adderlink X2 Silver | Adderlink X2 Gold | Adderlink X2 MultiScreen | Adderview IP | Adderview CATx | Adderview CATx IP | Adderlink AV | Adderlink IP | Adderlink IP Gold

Dominion KX116 | Dominion KX132 | Dominion KX216 | Dominion KX232 | Dominion KX416 | Dominion KX432 | Dominion KX464 | Paragon II UMT242 | Paragon II UMT442 | Paragon II UMT832 | Paragon II UMT1664 | MasterConsole Z

DSR1020 | DSR1021 | DSR1022 | DSR1024 | DSR1030 | DSR1031 | DSR2020 | DSR2030 | DSR2035 | DSR4020 | DSR4030 | DSR8020 | DSR8030 | DSR8035 | DSView3 Software

KVM.net | SmartRack 16 | Smart CAT5 Switch 8/16 | Smart CAT5 Switch 16 IP | Phantom MXII | Phantom MXIP | DX Matrix | Smart IP Extender | Smart IP Access | IP Control | Smart CAT5 Extender | Mini CAT5 KVM Extender | RS232 Extender | VGA Extender | USB Extender | CAT5 VGA Data Transmitter | Audio Video Extender über CAT5 | CAT5 AV Audio Video Splitter | Smart IP Link

sensorprobe2 | sensorprobe8 | sensorprobe8-X20 | sensorprobe8-X60 | sensorprobe8L | sensorprobe8L-20 | sensorprobe8L-60 | cameraprobe8 | Mobil

iBOOT | iBB_C10

CM4000 | CM4008 | CM4116 | CM4148 | SD4002 | SD4008

Dominion KX116 | Dominion KX132 | Dominion KX216 | Dominion KX232 | Dominion KX416 | Dominion KX432 | Dominion KX464 | Paragon II UMT242 | Paragon II UMT442 | Paragon II UMT832 | Paragon II UMT1664 | MasterConsole Z

CAT5 1000HD | CAT5 5000HD | CAT5 7000HD | CAT5 9000HD | DVI 1000HD | DVI 2000HD

High-Density KVM Switch | Hideaway LCD KVM Switch | KVM over the Net | Matrix KVM Switch | Serial over the NET | Power over the NET | Guardian over the NET | KVM over Wireless | KVM Extender | KVM Modules | pcIPcard | KH0116 | KH88 | KL1116 | KN9116 | KM0216 | KM0432 | SN0108 | SN0116 | PN9108 | PN0108 | GN0116 | KW1000 | KA9250 | KA9222 | KA9272 | KA9120 | KA9130 | KA9140 | KA9170 | MP0101M | MP0101P | MP0101U | MP0120 | MP0130 | MP0131 | MP0170 | IP9001 | IPMI

MI Serie | MI RM Serie | MT Serie | MT RM Serie | MH Serie | MH RM Serie | MH 6000 | Discovery | Zephyr | Quasar