Yavipind 0.9.6

Yavipind 0.9.6 Download Summary

  • Language: C/C++
  • Platform: Linux / BSD
  • License: GPL - GNU Public License
  • Databases: N/A
  • Downloads: 561
  • Released: May 30, 2007

Yavipind 0.9.6 Description

Yavipind is a secure tunnel aka 2 peers securely forwarding packets toward each other. It forwards any kind of packet (IPv4, IPv6 or other) sent over the virtual point-to-point device (e.g. tun0). It fully runs in linux userspace.

Features:Network efficiency:
- small packet overhead: 26bytes (e.g. ESP with DES MD5 is 32byte)
- Packet compression: Forwarded packets may be compressed using deflate (gzip). (WORK: add stat about efficiency)
- NAT compatible: yavipin's tunnel may be establish over NAT as all packets of a tunnel are sent over a single UDP/IPv4 connection. Moreover the peer unreachability detection periodically send packets which prevent the NAT engine from timing out the connection state.
- Peer unreachabilty detection: If the other peer becomes unreachable, it will be detected. It is done ala IPv6 neighbours discovery (rfc2461.7).
- Gracefull shutdown: If a peer purposely stops, it will notify the other which is immediatly aware of it.
Usage's simplicity:
- Fully in userspace: No need to recompile the kernel
- reuse existing tools: As yavipin use a virtual device, it is possible to apply to the tunnel any tool designed for network device. For example, it is possible to set up a firewall using ipchains/netfilter or to do traffic shapping using the kernel's traffic control (see tc).
Security's strength:
- packet security: each packet exchanged during the connection is encrypted using blowfish CFB and authenticated with HMAC-MD5 96bits.
- protection against packet replay: It uses strict anti-replay and no packet can be accepted twice. A eavedropper can't take a packet, keep it for a while and make it accept a second time by the destination.
- Efficient session key renewal: It uses hash chains for efficiency. It allows smooth key transition not to cause any packet loss during the renewal. It provides forward secrecy inside the connection.
- Protect DoS ala TCP syn : It uses cookie exchange (rfc2522.3) during the connection establishement.
- Forward secrecy : Even if the attacker cracks the box, he won't be able to decrypt network traffic older than a given delay (default 10min). The diffie-hellman private key and the session key are periodically renewed and securely erased from memory.

Yavipind Bookmark

Hyperlink code:
Hyperlink for Forum code:

Yavipind 0.9.6 Script Download Notice

Top 4 Download periodically updates information of Yavipind 0.9.6 script from the developer, but some information may be slightly out-of-date.

Our script download links are directly from our mirrors or publisher's website. Yavipind 0.9.6 torrent files or shared files from free file sharing and free upload services, including Rapidshare, MegaUpload, YouSendIt, MailBigFile, DropSend, HellShare, HotFile, FileServe, MediaMax, zUpload, MyOtherDrive, SendSpace, DepositFiles, Letitbit, LeapFile, DivShare or MediaFire, are not allowed!

EncFS

EncFS provides an encrypted filesystem in user-space. It runs without any special ... module to provide the filesystem interface.As with most encrypted filesystems, Encfs is meant to provide security against off-line attacks; ie your notebook is stolen, your backups are stolen, ...

w3pw

... based password wallet manager written in PHP. The encrypted information is stored in a MySql Database. Features: - Information is encrypted - Available Fields per entry: Info, host, login, password and description - Upload function for semicolon separated text-files - Timout for ...

Open Source Tripwire

Open Source Tripwire software is a security and data integrity tool useful for monitoring and ... on specific file change(s) on a range of systems. ...

Program Guard

Program Guard allows the user of a Linux workstation to specify which application programs are allowed for TCP/IP connections to the Internet (Internet addresses are defined as any IP address not in the range of 10.0.0.0/24 or 192.168.0.0/16). The application program names can be specified by listing them in a file (Static ...

Aquarium PHP

... 350 words per second! - Uses an encrypted dictionary of almost 100 objectionable words, so you don't need to compile your own bad-words file and keep it plain-text on a server. - The specially developed algorithm detects sound-alike as well as look-alike words to produce almost perfect text ...