Solved

Cisco VPN concentrator

Posted on 2006-07-19
3
375 Views
Last Modified: 2012-05-05
hi I'm looking at purchasing a Cisco VPN concentrator to terminate all of my site to site VPN's and Cisco client VPN's

i have 2 remote sites which have a cisco 501 which VPN's back to the 515e

I'm just using a static username/password for the Cisco client!!! that's why i want to move to the VPN Concentrator

my pix is connected directly to the cisco Router (Outside) and then to the internal LAN, I have 1 DMZ connection which is already being used (mailsweeper)

what's the best network design for installing this concentrator, where should it be placed within the network?

regards
xk8
0
Comment
Question by:jagdhillon
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
3 Comments
 
LVL 10

Accepted Solution

by:
naveedb earned 125 total points
ID: 17137572
I'm just using a static username/password for the Cisco client!!! that's why i want to move to the VPN Concentrator

If this is the only concern you have to, you may consider deploying a RADIUS server in your environment.

If there are other reasons, reliability, volume etc., you may go ahead with Concentrator. You can connect in the same place ase your PIX is, i.e. between your Outside router and Internal Network.


You can also connect the LAN side of Concentrator to your DMZ, but would require setting up rules to allow traffic from DMZ to Inside Network through PIX. It will be more secure if you require such setup.
0

Featured Post

Create the perfect environment for any meeting

You might have a modern environment with all sorts of high-tech equipment, but what makes it worthwhile is how you seamlessly bring together the presentation with audio, video and lighting. The ATEN Control System provides integrated control and system automation.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

While it is possible to put two routes in place with the secondary having a higher metric, this may not always work. In the event of a failure that does not bring down the physical interface on the router the primary route is not removed. There is a…
Shadow IT is coming out of the shadows as more businesses are choosing cloud-based applications. It is now a multi-cloud world for most organizations. Simultaneously, most businesses have yet to consolidate with one cloud provider or define an offic…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Suggested Courses

688 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question