Router Charts

Click for Router Charts

Router Ranker

Click for Router Ranker

NAS Charts

Click for NAS Charts

NAS Ranker

Click for NAS Ranker

More Tools

Click for More Tools

Security How To

Introduction

These days, you can find a hot spot pretty much anywhere, allowing you free access to roam the Internet without much of a problem. But this isn't exactly a safe way to browse the web, securing any content you might log in with, or post on a webpage that's not the most secure. On the other hand, you might just not want people to know what you're browsing.

I've found many uses for the technique that I'll be describing; it even beats almost all of the content filters out today, providing the ability to securely access whatever you want, so long as you have a few small requirements.

Client / Server Setup

You'll first need an SSH daemon. You can find these anywhere and most webpage hosts give you a login for one when you purchase hosting. You can also use a Linux box of some sort on your home network (This is my method of choice.) This will run remotely, you just need to be able to log into it using an SSH client.

Next, you need an SSH client that supports SSH Tunneling. I've used PuTTy for years, so it's my client of choice.

Finally, you need a network that you don't trust, or that you would just like to cover your tracks on.

I use Firefox for my secure browsing so that I don't have to worry about constantly reconfiguring my browser. I just log into PuTTY, and then open Firefox. This method leaves my Internet Explorer untouched.

I'm assuming the SSH server is already set up. You just have to be able to remotely log in using an SSH client. The majority of Linux distros support this right after the OS is installed (assuming you didn't install a firewall).

I'm using Ubuntu 7.10 server for my SSH daemon. It does everything from webpage hosting, to e-mail, and even backups. This will not affect anything running on that server, so for the most part, it's completely safe.

Now we need to configure PuTTy to connect using Tunnels. Open PuTTy, scroll down the left side to SSH, then Tunnels. In Source port, enter a number that you won't normally use, I chose 8080. Leave the Destination blank, set the first option to Dynamic, and the second to Auto. Click the Add button.

Setting the source port

Figure 1: Setting the source port

You should now see D<port> In my case, I have D8080 (Figure 2).

After setting the source port

Figure 2: After setting the source port

From here, click Session at the top, enter the SSH server's PUBLIC IP address. You can either use an IP address or a host name. If you have a dynamic IP address, you can use a Dynamic DNS service to make things a lot easier when trying to connect to your home network. Make sure you've selected SSH (default most of the time) and don't worry about changing the port from 22 unless you changed the default SSH port on the box you plan to use.

Type a name in the Save Session so you don't have to go through all of this again. I'm original, so I use Test. Click Save. The name should now appear in the box under Default Settings. If you double-click on the saved name, PuTTY will connect with all of the settings you just entered. You can also hit Load which will load the settings into the client before hand, allowing you to edit them as needed.

More Stuff

Featured Sponsors




Top Ranked Routers


AC5300

AC3100

AC1900

Support Us!

If you like what we do and want to thank us, just buy something on Amazon. We'll get a small commission on anything you buy. Thanks!

Over In The Forums

I am using DMA SoftLab - Radius Manager Version 4.1.6 with Mikrotik routerboard, everything is working fine except for Radius manager to update users ...
... in running a website that depends on ads for revenue.http://arstechnica.com/security/201...tising-that-hid-attack-code-in-banner-pixels/
My 3TB USB3.0 hard drive fails to auto-mount after the RT-AC68U reboots. I'm running 380.63_2.I never had this problem before upgrading to 380.63_2. I...
Hi all,I have a asus RT-N66u running the default firmware (version 3.0.0.4.380_3831). It is hooked into a DM200 (in modem only mode) using vdsl2 (PPPo...
View attachment 7936 Zyxel’s line of cloud-managed business networking products includes new 802.11ac access points, and Gigabit Ethernet switches, al...

Don't Miss These

  • 1
  • 2
  • 3