comtekso
asked on
VPN basics
If I have multiple site-site or LAN to LAN VPNs setup, and use RDC, what is used to direct the traffic thru the appropriate tunnel?
SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
ASKER
Great info, Thanks.
We currently have have a Cisco PIX 506e and a 1700 series router in our main office, so we will almost certainly use cisco at the remote ends as well.
We currently have have a Cisco PIX 506e and a 1700 series router in our main office, so we will almost certainly use cisco at the remote ends as well.
SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
In this case, RPPreacher is correct...I believe that PIX firewalls use access-list statements to define what traffic is classified as "interesting" and should be sent down a VPN tunnel.
In my eyes, Cisco does it in a very stupid method- access-lists are getting SO old. But they are Cisco so....I guess they know best.
I had no issues with Nortel at all...very easy to setup and manage. Netscreen (now Juniper-owned) is also a better option.
In my eyes, Cisco does it in a very stupid method- access-lists are getting SO old. But they are Cisco so....I guess they know best.
I had no issues with Nortel at all...very easy to setup and manage. Netscreen (now Juniper-owned) is also a better option.
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
For example, VPN-A says it has 10.x at it's end, and VPN-B says it has 11.x at it's end. When an IPsec tunnel is being established between them, they exchange that local subnet info in the handshaking phase. VPN-A adds 11.x to it's routing table (next hop VPN-B) and VPN-B adds 10.x to it's routing table (next hop VPN-A).