User Manual for NOP1840 PEP-Box Server
Technology
Newtec proprietary
Version 1.0
Confidentiality :
Unrestricted
Page 35 / 96
4.5.2
Transparent Capturing on Server Side
Refer to section
7.2
and
7.3
for GUI configuration.
If only client side TransparentCapturing is used, the TelliNet Server is unaware of the IP addresses
used on client side. TCP connections established from server side (e.g. for active FTP), are therefore
not routed via the TelliNet Server and are not subject to TCP Enhancement. Additionally non-TCP data
captured on the client side will not be forwarded by the TelliNet Server. Therefore it is recommended
to deactivate capturing of non-TCP in case TransparentCapturing is used on client side only.
Transparent Capturing on Server side has to be activated to benefit from TCP enhancement for all
TCP traffic towards the client side. The TelliNet Server forwards all TCP traffic with a target IP address
corresponding to a client site to the corresponding TelliNet Client, under the precondition that an ETCP
association is currently existing between the TelliNet Client and the TelliNet Server (continuous Server
connections can be configured for the Clients).
The TelliNet Server then not only forwards all relevant TCP traffic enhanced to the TelliNet Clients but
it acts transparently to the applications on server side.
Without TransparentCapturing on Server side, the TelliNet Server uses its own IP address as source
address when forwarding incoming TCP connections from the TelliNet Clients.
Additional server side TransparentCapturing allows to configure the TELLINET Server to use the
original client IP address as source address and port for the captured TCP connections.
It is even possible to additionally configure the TelliNet Server to use the IP address of the TelliNet
Client to which the data is pushed as source address for HTTP Prefetching requests. This feature can
be activated in addition to the normal TransparentCapturing on server side. If it is not activated, HTTP
Prefetching requests are sent with the source IP address of the TelliNet Server because they are
originating from the TelliNet Server.
Server side TransparentCapturing can be used to transparently capture incoming TCP traffic at server
side. The TelliNet Server forwards this traffic enhanced to the TelliNet Clients. The TelliNet Server
checks via the target IP address whether the traffic shall be sent to a TelliNet Client.
Without TransparentCapturing on server side, only traffic resulting from client requests is sent
enhanced via the TelliNet Server and Client while traffic originating from any server side application
will not be routed via TelliNet.
In addition, TransparentCapturing on Server side will cause the TelliNet Server to use the original
source address and port of TCP connections from client side for forwarding of that TCP connections.
Without TransparentCapturing on Server side, the TelliNet Server uses its own IP address as source
address when establishing TCP connections to e.g. web servers to forward incoming TCP connections
from the TelliNet Client.
The utilization of the module TransparentCapturing at Server side requires that the following
preconditions are met:
•
The module TransparentCapturing is licensed at the TelliNet Client;
•
TransparentCapturing is activated at the TelliNet Client as described for TransparentCapturing
client;