A system, method and apparatus for securing communications between a
trusted network and an untrusted network are disclosed. A perimeter
client is deployed within the trusted network and communicates over a
session multiplexing enabled protocol with a perimeter server deployed
within a demilitarized zone network. The perimeter client presents
requests to make available and communication initiation requests to the
perimeter server which presents corresponding sockets to the untrustred
network. The session multiplexing capabilities of the protocol used
between the perimeter server and perimeter client permit a single
communication session therebetween to support a plurality of
communication sessions between the perimeter server and untrusted
network. In the event data flows across the communication sessions are
encrypted, decryption of the data flows is left to the components at the
end points of the communication session, thereby restricting exposure of
privileged information to areas within trusted networks.