Re: VPN limitations on PIX 515

From: Martin, Chris (chris@xxxxxxxxxxxx)
Date: Wed Oct 03 2001 - 19:35:59 GMT-3


   
Yes, the PIX 515 is cumbersome to configure for Tunnelling. I had to do it
with a checkpoint firewall. Also tunneling on a PIX has allot of overhead
that could be used for its primary job, filtering packets and natting. Im
surprised your not looking into a cisco 3005, which can handle more then the
concurrent connections you need, and only costs about 4K

----- Original Message -----
From: "CLARKSON David-Syntegra AU" <david.clarkson@syntegra.com.au>
To: <ccielab@groupstudy.com>
Sent: Wednesday, October 03, 2001 3:18 PM
Subject: VPN limitations on PIX 515

> I've been scouting around for a substitute for a Nortel Contivity switch
for
> VPN termination. The VPN 3050 concentrators, which is a Contivity
competitor
> is out of price range, so I am looking at the PIX 515.
>
> I need around 200 tunnels, but more like 30-50 concurrent (max). Am I
> wasting my time with the 515?
>
>
> Thanks,
> Dave
> **Please read:http://www.groupstudy.com/list/posting.html
**Please read:http://www.groupstudy.com/list/posting.html



This archive was generated by hypermail 2.1.4 : Thu Jun 20 2002 - 22:33:12 GMT-3