Information Security

Information Security

  • Routing and Filtering Network Traffic

    A brief, high-level introduction to Linux networking architecture. Explains how the Linux kernel manipulates network traffic using a top-down approach and basic framework to route

    ...
  • OpenVPN and OpenSSL: Partners in Security

    This article examines the relationship between OpenVPN and OpenSSL, why the former depends on the latter, and why it's important to remain cognizant of software version numbers

    ...
  • Clear as Mud: OpenSSL and Ubuntu's Versioning System

    I wrote a separate article on versioning errors in Ubuntu (False Version Reporting in Ubuntu 16.04) and used

    ...
  • How VPNs Work - Part 3: Encryption and Authentication

    This article is Part 3 in a series of three (3) articles about how Virtual Private Networks (VPNs) work. While I get into some technical details, the intent is to scratch the surface just enough

    ...
  • How VPNs Work - Part 2: Protocols

    This article is Part 2 in a series of articles about how Virtual Private Networks (VPNs) work. Part 1 of the series,

    ...
  • SECMARK Without SELinux

    Yes... it is possible

    This is not common knowledge. Contrary to most literature, you can use SECMARK and CONNSECMARK without SELinux. This article explains what that means and

    ...
  • WireGuard

    WireGuard is the "new kid on the block" in the world of VPNs.

    Protocol adoption in the VPN world is a very slow process. Yet a relatively recent upstart is garnering a lot of attention:

    ...
  • Do You Really Need (or Want) a VPN?

    Contemplating signing up for a Virtual Private Network (VPN)? Why? The truth is most people don't need them, most of the time. Here's how to determine if it truly makes sense for you.

    ...
  • Mitigating Risk: Combining Privacy Services

    This article is about digital privacy and specifically, safeguarding your privacy online through the use of Virtual Private Networks and Domain Name System masking

    ...
  • OpenVPN Version List and Changelog

    Table comparing the complete list of all OpenVPN versions. See below for pertinent notes.

    Combining a VPN and Smart DNS

    Thinking of combining a Virtual Private Network (VPN) service with a Smart DNS service? If you'll be running both services on the same device, before you leap forward with your plans it's wise to

    ...
  • How the NSA Monitors VPNs

    Did you know in the United States, the NSA (National Security Agency) routinely monitors all internet traffic coming in or out of the United States?1 Were you aware

    ...
  • Security Implications of Samba Access to non-ACL File Systems

    Several processes control the flow of data through a Samba-managed network connection. Ironically, the most important of them has nothing to do with networking.

  • A Layman's Guide to Networking Cryptography

    A Layman's Guide to Networking Cryptography

    This article explains common network cryptographic concepts in plain-English.

    Contents

    ...
  • Critical Vulnerability Impacts Nearly All VPN Software

    A newly discovered security vulnerability exists in most modern operating systems which allows a malicious actor to hijack an active TCP-based VPN connection, without the need to break its

    ...
  • Demystifying IKE/IKEv2

    Demystifying IKE/IKEv2

    IKEv2 is a security protocol that facilitates cryptographic symmetric key exchanges between endpoints.

    ...
  • Information Security

    Internet security relies upon a fixed set of principles and tools to make the exchange and storage of data as secure as possible. Which methods are "best" depends on one's priorities. What is

    ...
  • Choosing the Right VPN Provider

    The process of selecting a VPN provider should not be taken lightly. The more one is concerned with privacy or anonymity, the fewer good choices there are. VPNs are a crucial component of a

    ...
  • The Great Global VPN Swindle

    Although I'm a big proponent of VPNs, the industry has become littered with mis-information and outright shams, creating a mixed environment when it comes to advertised claims of privacy

    ...