[jcifs] Encrypted communication over named pipes?

christofer.dutz at c-ware.de christofer.dutz at c-ware.de
Wed Mar 14 01:39:54 MDT 2012


Hi Mike,

I was afraid of such an answer, but I was expecting it, as most of the MS Tools communicate unencrypted.

Well I think in that case I will concentrate on integrating a Diffie Hellman key-exchange and encryption on application-layer, cause IPSec isn't a real Option for me.

Chris


[ C h r i s t o f e r  D u t z ]

C-Ware IT-Service
Inhaber
Dipl. Inf. Christofer Dutz
Karlstraße. 104, 64285 Darmstadt

fon:  0 61 51 / 27315 - 61
fax:  0 61 51 / 27315 - 64
mobil:  0171 / 7 444 2 33
email:  christofer.dutz at c-ware.de<mailto:christofer.dutz at c-ware.de>
http://www.c-ware.de<http://www.c-ware.de/>

UStId-Nr. DE195700962







Von: Michael B Allen [mailto:ioplex at gmail.com]
Gesendet: Mittwoch, 14. März 2012 01:28
An: christofer.dutz at c-ware.de
Cc: jcifs at lists.samba.org
Betreff: Re: [jcifs] Encrypted communication over named pipes?

Hi Chris,

Actually no I don't recall anything about encryption for named pipes or CIFS. I think IPSec is used in this scenario.

Mike

--
Michael B Allen
Java Active Directory Integration
http://www.ioplex.com/
On Mon, Mar 12, 2012 at 8:50 AM, christofer.dutz at c-ware.de<mailto:christofer.dutz at c-ware.de> <christofer.dutz at c-ware.de<mailto:christofer.dutz at c-ware.de>> wrote:
Hi,

I just finished my latest tool that allows me to remote-control a cmd-window on allmost any Windows machine. Now I am thinking of ways to secure the connection. One thing I found relatively anoying with Sysinternals PSExec was that communication was handled unencrypted and input as well as server responses were transmitted in plain text.

Is there a way to encrypt the named pipe communication? I was thinking about implementing a symmetric encryption channel simply encoding what I send in and decrypt what I get out, but I wanted to avoid having to implement the key negotiation logic. So is there allready something available?

Chris


[ C h r i s t o f e r  D u t z ]

C-Ware IT-Service
Inhaber
Dipl. Inf. Christofer Dutz
Karlstraße. 104, 64285 Darmstadt

[cid:image001.gif at 01CD01BE.07430860]<http://www.benchpark.com/788335/kundenzufriedenheit.htm>
   IT- und Systemhäuser<http://www.benchpark.com/it_und_systemhaeuser.htm>

fon:  0 61 51 / 27315 - 61
fax:  0 61 51 / 27315 - 64
mobil:  0171 / 7 444 2 33
email:  christofer.dutz at c-ware.de<mailto:christofer.dutz at c-ware.de>
http://www.c-ware.de<http://www.c-ware.de/>

UStId-Nr. DE195700962




-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.samba.org/pipermail/jcifs/attachments/20120314/acdc38a9/attachment-0001.html>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: image001.gif
Type: image/gif
Size: 1475 bytes
Desc: image001.gif
URL: <http://lists.samba.org/pipermail/jcifs/attachments/20120314/acdc38a9/attachment-0001.gif>


More information about the jCIFS mailing list