James,

You could put the stunnel into a while loop that makes it.
perhaps you could send yourself an email each time it closed ?

stunnel is probably the easiest to setup.

I had written a secure version of mod_ajp for apache 1.3 (ie years ago) 
which did the whole ssl encryption of the traffic with 2 way
authentication it wasn't added to the tomcat source as well no one
wanted it :(

D


On Thu, 2008-03-06 at 17:54 -0500, Christopher Schultz wrote:
> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA1
> 
> James,
> 
> James Ellis wrote:
> | I have done some goog'ling on IPSec and VPN and I have found three
> | possibilities:
> |
> | 1) OpenSSH and Port Forwarding
> |
> | 2) OpenVPN
> |
> | 3) Stunnel (thanks little voice)
> |
> | What concerns me about all three options is error handling.  If my
> | OpenSSH or OpenVPN or Stunnel connection failed/timed out, the whole
> | site would go down.  There would have to be a VERY good and almost
> | instant reconnection taking place.
> |
> | I am also concerned about performance.
> |
> | Any comments?
> 
> If you want encryption, you have to sacrifice performance, so just
> forget about that concern right off the bat. Your concerns about
> robustness are certainly reasonable. You should be able to find
> information about restarting connections for each of these products by
> searching their forums, help, etc. Any good VPN should have options for
> restarting them when a failure is detected (but nothing is ever foolproof).
> 
> - -chris
> -----BEGIN PGP SIGNATURE-----
> Version: GnuPG v1.4.8 (MingW32)
> Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org
> 
> iEYEARECAAYFAkfQdjIACgkQ9CaO5/Lv0PCfxwCfTDsfjFquhx2Yibw8hKZyTh28
> m8sAoJ8eHlCR5KI/br4KeMwKMDNEXPRH
> =wwmj
> -----END PGP SIGNATURE-----
> 
> ---------------------------------------------------------------------
> To start a new topic, e-mail: users@tomcat.apache.org
> To unsubscribe, e-mail: [EMAIL PROTECTED]
> For additional commands, e-mail: [EMAIL PROTECTED]
> 


---------------------------------------------------------------------
To start a new topic, e-mail: users@tomcat.apache.org
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

Reply via email to