Solved

vpn concretrator

Posted on 2014-04-10
2
420 Views
Last Modified: 2014-04-15
What is vpn concentrator? What device i need for this?
does vpn terminate on this device ?
to provide access to internal devices do i need to make changes to my firewall considering i have this device on my dmz?
how many users or vpn connections it can take?
can i provide dhcp on this device?
can we provide ssl vpn using this device?
0
Comment
Question by:mohannitin
2 Comments
 
LVL 17

Accepted Solution

by:
pergr earned 500 total points
ID: 39993496
A VPN Concentrator will terminate all VPN tunnels from remote users and/or branches.

Many firewalls can nowadays to this on the firewall itself, but some people chose to do it on a dedicated device, which may have more features and will offload the firewall to handle other things.

The tunnels are typically of two different types, either IPSec or SSL VPN.
Some vendors use different devices for "VPN Concentration" of IPSec and SSL VPN - especially for SSL VPN.

The number 1 in the market for SSL VPN termination over the last 10 years has been the Juniper SA/MAG devices, which are specifically dedicated on SSL VPN and has a rich feature set related to this, A normal Juniper firewall can not handle SSL VPN at all.

Many other vendors, such as Fortinet use exactly the same device for both firewall, IPSec termination and SSL VPN termination - and they have a reasonable feature set.

If it is a dedicated device, then yes, you would typically put it in the DMZ.

For very scalable solutions (tens of thousands of users) you would typically cluster several devices.

Yes, the device will allocate IP addresses to the VPN tunnels (although DHCP may not be the protocol used).
0
 

Author Closing Comment

by:mohannitin
ID: 40001852
thanks , awesome answer
0

Featured Post

VMware Disaster Recovery and Data Protection

In this expert guide, you’ll learn about the components of a Modern Data Center. You will use cases for the value-added capabilities of Veeam®, including combining backup and replication for VMware disaster recovery and using replication for data center migration.

Join & Write a Comment

Please see preceding article here: http://www.experts-exchange.com/Networking/Operating_Systems/A_11209-Root-Bridge-Election.html Figure 1 After Root Bridge has been elected, then what?..... Let's start by defining a Root Port in la…
Creating an OSPF network that automatically (dynamically) reroutes network traffic over other connections to prevent network downtime.
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

747 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

13 Experts available now in Live!

Get 1:1 Help Now