Re: (IPSec alternatives)

From: Howard C. Berkowitz (hcb@gettcomm.com)
Date: Wed Jun 11 2003 - 19:05:54 GMT-3


At 8:57 PM +0100 6/11/03, R&S Groupstudy wrote:
>Hi,
>
>Please can I hear peoples views on the following:
>
>I want to connect three sites together via the internet. (I just made this
>up)

Before going farther, you need to a bit more defining of the problem
you want to solve, as well as the technology. I think of VPDN as
virtual private dial network, so where is the dialing if you are
running over the Internet? To the ISP?

Are there other kinds of data not requiring security that need to go
over the same tunnels, which would be a reason for GRE?

Where is the IPSec encryption taking place? Hosts? Your gateways? ISP gateways?

>
>I have FW IOS feature set routers .
>
>what are the pros and cons of implementing
>
>1. native IPSEC
>2. IPSEC over GRE tunnels
>3. IPsec using VPDN peering beyween routers.
>
>cheers
>
>Adam



This archive was generated by hypermail 2.1.4 : Fri Jul 04 2003 - 11:10:56 GMT-3