Link to home
Start Free TrialLog in
Avatar of jbobst
jbobst

asked on

Small Office VPN recommendations

I am trying to help out a side client who three small offices, and each office only has 3-9 employees.  Currently, only his "main" office is the only office with a Windows domain controller server, and the other two office just use remote desktop (terminal server) to connect in.  However, his main office has a residential grade D-Link router and has port 3389 open for the terminal server sessions.  He recently got some sort of DBrute virus, which it seems uses port 3389.  I want to put in new firewalls that connect each office with a hardware VPN.  In my "real" job, we use a Sonicwall firewall, and since I am familiar with Sonicwall products, I am thinking of simply recommending that he purchase a Sonicwall TZ 200 for this main office with the server and two Sonicwall TZ 100 firewalls for his other two offices.  Does this seem like a good option?  The Sonicwall's aren't very cheap, but I assume they are decent products and will be somewhat similar to the older Sonicwall Pro2040 I manage at my real job.  I assume both the TZ 100's can VPN to the 200 permanently?

Thanks for any advice.
Avatar of crouthamela
crouthamela
Flag of United States of America image

VPNs is a much better way than opening ports. Unless they use a whole lot of bandwidth, you could probably get away with TZ100's at each site even. The latest Gen SonicWALLs are way nicer than the older ones, you can't go wrong with them.
Avatar of jbobst
jbobst

ASKER

Thanks for the advice crouthamela.  In trying to decipher the specs on the TZ 100 and TZ 200, I was worried that if I purchased all 100's, that the main office wouldn't be able to have two VPN tunnels.  Will the 100's allow multiple VPN connections?  On the Specification page from Sonicwall, it says the TZ 200 has two Global VPN's Bundled and a maxium of 10 clients (do I have to buy additional Global VPN's if my client ever needs to open up another office?).  The TZ 100 has no bundled clients, or rather, it says N/A.  But I do see that is says it can do a maximum of 5.  I guess I am not sure then what I need exactly to have each location connected through VPN.
ASKER CERTIFIED SOLUTION
Avatar of crouthamela
crouthamela
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of jbobst

ASKER

Thanks for the explanations...I totally missed the part about site-to-site connections on the specifications.