public:ssh-usage

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revision Previous revision
Next revision
Previous revision
public:ssh-usage [2018-07-18 10:01] – [Configuring your web browser] Reinoud Bokhorstpublic:ssh-usage [2018-07-18 11:46] (current) – [Simple VPN using dynamic port forwarding] Reinoud Bokhorst
Line 206: Line 206:
 ===== Simple VPN using dynamic port forwarding ===== ===== Simple VPN using dynamic port forwarding =====
  
-Instead of forwarding a single port you can also use dynamic port forwarding. This will turn your SSH client into a local [[https://en.wikipedia.org/wiki/SOCKS|SOCKS]] proxy server. This is quite powerful as all client programs that are then configured to use the SOCKS proxy will send their network traffic over the SSH connection to the remote network. When SOCKS5 is used, also DNS lookups can be sent through your tunnel, basically turning your SSH connection into a poor man's VPN connection.+Instead of forwarding a single port you can also use dynamic port forwarding. This will turn your SSH client into a local [[https://en.wikipedia.org/wiki/SOCKS|SOCKS]] proxy server. This is quite powerful as all client programs that are then configured to use the SOCKS proxywill have access to services in the remote network over the encrypted ssh connection. When SOCKS5 is used, also DNS lookups can be sent through your tunnel, basically turning your SSH connection into a poor man's VPN connection.
  
-The most useful application is to use a SOCKS proxy to access LOFAR web services that are behind the firewallwhen you are not connected to the LAN. Two steps are needed: +The most useful application is to use a SOCKS proxy to access LOFAR web services that are behind the firewall (when you are not connected to the LAN). Two steps are needed: 
-  - Open a SOCKS proxy tunnel to the LOFAR portal+  - Create a SOCKS proxy to the LOFAR portal
   - Configure your browser (or OS) to use the proxy   - Configure your browser (or OS) to use the proxy
 Below a description on how to do that. Below a description on how to do that.
  
-==== Create SOCKS proxy tunnel ====+==== Create SOCKS proxy ====
  
 __With SSH__ __With SSH__
  
-The SOCKS tunnel is created by enabling the dynamic port forwarding feature when connecting to the LOFAR portal:+The SOCKS proxy is created by enabling the dynamic port forwarding feature when connecting to the LOFAR portal:
  
 <file> <file>
Line 225: Line 225:
 Port 1080 is the default SOCKS port but you can also choose another non-privileged one (e.g. 9999). Some client programs however may expect that port 1080 is used. Port 1080 is the default SOCKS port but you can also choose another non-privileged one (e.g. 9999). Some client programs however may expect that port 1080 is used.
  
-Alternatively you may add the '-C' flag to enable compression. This will speed up your connection in most cases except when dealing with a lot of binary data.+Additionally you may add the '-C' flag to enable compression. This will speed up your connection in most cases except when dealing with a lot of binary data.
  
 __With PuTTY__ __With PuTTY__
  • Last modified: 2018-07-18 10:01
  • by Reinoud Bokhorst