www.appgate.com


















· 
· 
· 
· 
· 
· 
· 
· 
· 
· 
· 
· 









Copyright © 2005-2007 AppGate Network Security AB.
+46 (0)31 - 774 43 50
All rights reserved.
Legal Notice
Comments to webmaster




Today many people believe that all VPN:s system are more or less the same in terms of functionality and security. Many times they get dissapointed when it turns out that the VPN do not support all application protocolls,autentication systems and client operating systems.

It is also often forgotten that the solution should be able to support administrational and organisational changes.

AppGate VPN is an Hybrid VPN based on SSH/SSL technology that:
  • Supports all application protocols not only web based.
  • Supports terminal server solutions.
  • The user uses the real application interface without modification.
  • Do not have any NAT problems.

The difference between AppGate VPN and other VPN systems

IPSec
SSL
AppGate VPN
Client
software

Full software
install required

Applet or user
installed application

Applet or user
installed application

Software
operation

Network level
Application level
Application level
Tunnels
Encrypts multiple
TCP connections

Encrypts one
TCP connections

Encrypts multiple
TCP connections

Encryption
Not defined
-DES/3DES

Limited range
defined (40 bit
upwards)

Not defined
-3DES/AES/
Blowfish/ ArcFour

User
authen-
tication

Not required -
custom add-on

Not required -
custom add-on

Required -
custom add-on

Application
access

Full application
access

Limited application
access -web based

Full and/but
rights managed
application access

Network
traversal
issues

Difficulty
with Firewalls,
APNs, NAT etc

none
none
Works
with all
application
protocols

YES
NO
YES








The government agency was divided into separate departments each maintaining their own infrastructure using their own systems for salaries, financial systems, email systems. A major challenge in the setup was the large amount of different “non-standard” application protocols.

In order to lower cost and enhance security the government agency wanted to centralize the applications servers at fewer locations without limiting usability and without changing who could access what. Protection of resources from unauthorized access was as essential as giving authorized users access to selected information. Today the AppGate system supports more than 25.000 users for the government agency. An added feature was that the AppGate system provided the agency with a mechanism for internal billing using the system logs.