avatar
Re: Questions for IPsec and VPN# Internet - 有缘千里一线牵
h*h
1
devices vary a lot, normally you have three choices
1> Nortel Contivity
2> Cisco 3000/5000/7100 VPN concentrator
3> Lucent SpringTide
for software solution, you have Checkpoint w/ VPN accelerator
I don't know if this is for VPDN (cisco's term for remote access VPN)
or enterprise VPN (site-to-site), it seems to me that you are talking
about site-to-site VPN.
The problem you have here is scalability. I never head about DSN,
but for Cisco's device, you have several different ways to do that
1> ISAK
avatar
m*t
2

http://www.icsalabs.com/html/communities/ipsec/certification/certified_products/index.shtml
a few of the products provide policy based networking capability,
in that sense you can have a centralized server to distribute the
network policy. But guess the admin work is always there
For IPSec SA using IKE? it varies, deciding factors can be computing power,
auth method used in IKE(preshared key, Public key based, legacy auth method
xAuth), IKE mode users are using( Aggressive, main mode), algori
相关阅读
logo
联系我们隐私协议©2024 redian.news
Redian新闻
Redian.news刊载任何文章,不代表同意其说法或描述,仅为提供更多信息,也不构成任何建议。文章信息的合法性及真实性由其作者负责,与Redian.news及其运营公司无关。欢迎投稿,如发现稿件侵权,或作者不愿在本网发表文章,请版权拥有者通知本网处理。