Security Basics mailing list archives

Re: VPN overkill?


From: "Gautam R. Singh" <gautam.singh () gmail com>
Date: Thu, 18 Nov 2004 12:19:32 +0530

On Tue, 16 Nov 2004 22:16:35 +0000, Ted A <arcturous () hotmail com> wrote:
All,
First off, good fun reading this list. Some really great advice and good
thinkers on here. Thanks for the great questions and great answers.

So here's my issue. I have an IT infrastructure manager who has raised a
requirement I find myself questioning.
We have a goal of connecting a remote office to a central office via a VPN.
This manager insists that only acceptable way to accomplish this is by
connecting 2 VPN concentrators. I debate this, noting that a PIX should be

Cisco pix 506 would be fine, its designed for remote office/branch
office it allows max 25 vpn peers but for an medium enterprise level
Pix 515 would be great & if u find ur vpn traffic being too heavy for
Pix 515 u can install vpn acclerator cards to handle most of vpn
processing (decryption, encryption) & Pix 515 is also supports
firewall failover setup.
 

more than capable of handling this connection at the remote office and the
only place the concentrator is needed is at the central office.
Am I completely off my rocker, thinking that a second concentrator for a
single connection is a little overboard?

Thoughts?
Thanks,
Ted




-- 
Gautam R. Singh
[MCP, CCNA, CSPFA, SA1, Unemployed]
pgp: http://gautam.techwhack.com/key/ | ymsgr: er-333 | msn: ro0_@hotmail


Current thread: