Previous Topic: Secure Private Tunnel

Next Topic: About the Secure Private Tunnel

Secure Private Tunnel Overview

Security is paramount when sending sensitive data across a public network. CA DLP provides support for two machines to communicate via a secure private tunnel. The tunnel is designed to provide confidentiality, message integrity and endpoint authentication between any two machines in a CA DLP installation. For example, you can use the tunnel to connect a CMS with a remote gateway.

SPT

Secure private tunnel architecture

Information leaves the Routing Gateway (1) via the Replication Module (2). The Virtual Socket (3) intercepts requests for TCP sockets and relays data to and from the RMI Server Socket (9) via the secure private tunnel (4 and 8).

To enable the data to pass across the Internet (6), the gateway firewall (5) must be configured with the mapped public address of the routing gateway. The customer firewall (7) must be configured with the mapped public address of the CMS. Data can then reach the database (10) on the customer’s CMS or gateway (11).