Cisco PIX and multiple VPN

Cisco PIX and multiple VPN

Secure Home | Search | About
 Networking Firewalls    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content add this group's latest topics to your Google content
Subject Author Date
Cisco PIX and multiple VPN aslom 09-27-2005
Posted by aslom on September 27, 2005, 12:36 pm
If you were  Registered and logged in, you could reply and use other advanced thread options
Hi Guys,

My company needs to implements multiple VPN channels. We have Cisco PIX-515.
We hanve configured 2 VPN channels but both are ended also on PIX firewals
appliances.
The new need may address even up to 100 VPN connection.

My first doubt - is it possible to configure PIX to support so much VPN
connections without configuring each one-by-one? RADIUS server inside...
some kind of Easy VPN server...?

Second doubt - is it possible to configure those VPN channels from
non-Cisco-based-IOS (routers, other PIX'es) or Cisco VPN clients, for ex.
small VPN routers from D-Link, Linksys, Arlotto, etc...? And authenticate
them automaticaly as mentioned in my first doubt - preshared key, digital
cert, RADIUS?

Thanks for any suggests,
aslom




Posted by Shadus on September 27, 2005, 8:28 am
If you were  Registered and logged in, you could reply and use other advanced thread options
> My first doubt - is it possible to configure PIX to support so much VPN

Yes, we currently have the better part of 50 or so on a pix 515. The
cpu usage is currently sitting at about 15-30%. If you were going to
get into the 100 vpn range I'd suggest monitoring the traffic carefully
on the 515 and perhaps going up to a 525. It would depend how heavy the
traffic load is going to be. Another thing you need to look into is a
failover configuration if you're getting into that many hosts and you
need any serious degree of reliability.


Posted by Joe Beasley on September 30, 2005, 12:13 am
If you were  Registered and logged in, you could reply and use other advanced thread options
second question:

You should be able to connect to any other device that supports ipsec. Cisco to
Linux and freebsd works just fine.
--
jbeasley@sdf.lonestar.org
SDF Public Access UNIX System - http://sdf.lonestar.org


Similar ThreadsPosted
Multiple Cisco Clients April 12, 2007, 2:37 pm
Cisco pix 515+ static routes between 2 cisco pix October 13, 2005, 8:09 pm
Cisco pix 515 + static routes between 2 cisco pix October 13, 2005, 8:12 pm
WTB: CISCO WE ARE BUYING USED CISCO EQUIPMENT. February 14, 2008, 8:14 am
Multiple IPs on Sonicwall TZ 170 May 2, 2006, 1:30 am
Multiple PCAnywhere behind firewall December 21, 2004, 10:23 am
multiple office vpn question December 21, 2004, 10:19 pm
Checkpoint multiple Gateway VPN February 8, 2005, 11:43 pm
Multiple TCP/HTTP servers with only one IP : how to ? April 23, 2005, 4:40 am
managing multiple firewalls May 18, 2005, 9:45 am

The site map in XML format XML site map

Contact Us | Privacy Policy