Solved

VPN suggestion

Posted on 2004-09-08
2
236 Views
Last Modified: 2010-04-11
Hi, I need to establish a VPN link between two sites

I have the following equipment:
Site 1
Netscreen 5GT
Widnows 2000 Advanced Server
Static IP, permanent connection

Site 2
Windows ME
LinkSys Firwall
Static IP permanent connection,


What would be the post appropirate thing to do . I know Widnows 2000 Advanced server has in-built IPSEC capability. What do I need to make a secure VPN between sites 1 and 2, so Site 2 can access the files on the Windows 2000 Advanced Server

Any comments is appreciated

regards,
Nicholas
0
Comment
Question by:nicotine1
2 Comments
 
LVL 2

Accepted Solution

by:
jasperomalley earned 500 total points
ID: 12012346
The easiest thing to do would be to replace the Linksys firewall with a Netscreen-HSC and build the tunnel between that and the Netscreen-5GT. Then you don't have to worry about configuring IPSec on the Advanced Server or an IPSec client on the WinMe machine. The extra expense of the HSC unit will be made up in the time you will save trying to make this work.

Also, make sure you use different addressing schemes behind the firewalls (e.g. use 192.168.1.x in one location and 192.168.2.x in the other) or you'll have problems trying to route traffic over the VPN.
0
 
LVL 16

Expert Comment

by:The--Captain
ID: 12013370
jasper -

I agree with the above completely, although I would point out that it might be possible that the linksys router already has the capability to terminate the VPN connection and does not need to be replaced.

Kudos for mentioning that VPN endpoints should be terminated on firewalls, not servers or workstations, and for helping to avoid those pesky address collisions.

Cheers,
-Jon
0

Featured Post

IT, Stop Being Called Into Every Meeting

Highfive is so simple that setting up every meeting room takes just minutes and every employee will be able to start or join a call from any room with ease. Never be called into a meeting just to get it started again. This is how video conferencing should work!

Join & Write a Comment

This article offers some helpful and general tips for safe browsing and online shopping. It offers simple and manageable procedures that help to ensure the safety of one's personal information and the security of any devices.
If your business is like most, chances are you still need to maintain a fax infrastructure for your staff. It’s hard to believe that a communication technology that was thriving in the mid-80s could still be an essential part of your team’s modern I…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
In this tutorial you'll learn about bandwidth monitoring with flows and packet sniffing with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're interested in additional methods for monitoring bandwidt…

757 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

22 Experts available now in Live!

Get 1:1 Help Now