Re: Securing ODBC connections
Posted in 1999
Hello, I have an idea, but I haven't checked it and I'm not sure how easy is it to be implemented (and is it possible at all). The idea is that you have to install an SSL proxy on the client side and another one on server side. The first SSL proxy have to: 1. Listen for connections from ODBC driver 2. Initiate an SSL connection to your server side SSL proxy 3. Pass all data from/to ODBC to/from SSL server-side proxy through the secured SSL chanel. The server side proxy have to: 1. Listen for connections from the client-side SSL proxy 2. Autheticate the client and initiate a secure SSL chanel with the client 3. Send the data received from client SSL proxy to server and vice-versa. As a result we will have two unsecure chanels (ODBC<->client-side SSL proxy) and (server-side SSL proxy <-> Informix Database Server) and one secure chanel: (client-side SSL proxy <-> server-side SSL proxy) In this schema the ODBC should be setup to use the local host and the client-side SSL proxy tcp port for connections to Informix Server. Hope all this is not completely foolish. Kind Regards, Octav On Tue, Feb 16, 1999 at 11:44:57AM +0000, PaulITID.Matthews@chase.com wrote: > > > > Is it possible to secure ODBC access to a server's ports even if a client > may be connecting in via their own ODBC s/w > I assume the answer is no, but I'd like to be sure. Any tips on how to make > ODBC connections safer would be appreciated > > Paul Matthews > > -- Octav Chiriac Phone: (373) 2 21 20 96 NetInfo S.R.L. Fax: (373) 2 21 36 59 Chisinau (373) 2 24 00 83 Moldova, Republic of mailto:com@netinfo-moldova.com