Solved

Maximum active pix to pix vpn connections

Posted on 2006-07-10
5
679 Views
Last Modified: 2013-11-16
Does anyone know the maximum active pix to pix vpn connections you can have on a pix 515? In case you need it, here is the results from a show version

Cisco PIX Firewall Version 6.3(3)
Cisco PIX Device Manager Version 3.0(1)

Compiled on Wed 13-Aug-03 13:55 by morlee

cic-pix up 24 days 7 hours

Hardware:   PIX-515, 64 MB RAM, CPU Pentium 200 MHz
Flash i28F640J5 @ 0x300, 16MB
BIOS Flash AT29C257 @ 0xfffd8000, 32KB

Licensed Features:
Failover:                    Enabled
VPN-DES:                     Enabled
VPN-3DES-AES:                Enabled
Maximum Physical Interfaces: 6
Maximum Interfaces:          10
Cut-through Proxy:           Enabled
Guards:                      Enabled
URL-filtering:               Enabled
Inside Hosts:                Unlimited
Throughput:                  Unlimited
IKE peers:                   Unlimited

This PIX has an Unrestricted (UR) license.
0
Comment
Question by:ptuttle1319
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
  • 2
5 Comments
 
LVL 79

Accepted Solution

by:
lrmoore earned 500 total points
ID: 17076838
UR license = up to 2000 VPn tunnels
"Delivers feature-rich remote access VPN concentrator services for up to 2000 remote software- or hardware-based VPN clients"
http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_data_sheet09186a0080091b15.html
0
 

Author Comment

by:ptuttle1319
ID: 17077030
Im not sure if that applies to a pix to pix connection, or as they list it, a site to site connection. will it apply to that?
0
 
LVL 79

Expert Comment

by:lrmoore
ID: 17077624
Yes, it applies to site-to-site (hardware-based) regardless of what is at the other end - pix, router, vpn3000, other firewalls, whatever.
How many are you looking at supporting?
0
 
LVL 1

Expert Comment

by:Jaedub
ID: 17078019
2000 is your answer.
With a 515 (200MHz) and not a 515E (433MHz) you will notice a performace hit when using a high number of IPSEC connections with a high level of encryption AES 256, 192, 128 or 3DES.
0
 

Author Comment

by:ptuttle1319
ID: 17080755
It will only be 3 at the moment, so it's sounding like I should be good to go. Thanks!
0

Featured Post

Free Tool: Path Explorer

An intuitive utility to help find the CSS path to UI elements on a webpage. These paths are used frequently in a variety of front-end development and QA automation tasks.

One of a set of tools we're offering as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

To setup a SonicWALL for policy based routing to be used with the Websense Content Gateway there are several steps that need to be completed. Below is a rough guide for accomplishing this. One thing of note is this guide is intended to assist in the…
You deserve ‘straight talk’ from your cloud provider about your risk, your costs, security, uptime and the processes that are in place to protect your mission-critical applications.
Both in life and business – not all partnerships are created equal. As the demand for cloud services increases, so do the number of self-proclaimed cloud partners. Asking the right questions up front in the partnership, will enable both parties …
Both in life and business – not all partnerships are created equal. Spend 30 short minutes with us to learn:   • Key questions to ask when considering a partnership to accelerate your business into the cloud • Pitfalls and mistakes other partners…

717 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question