Re: [fw-wiz] Benefits of Network Extention Mode vs IPsec



On 1/18/07, Craig Van Tassle <craig@xxxxxxxxxxxxx> wrote:

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1


I suppose you're talking about Cisco vpn stuff.

Can anyone point me to some good documentaion as why NEM is better then
Standard
IPSec VPNS?


Basically: two two sides can initiate traffic.

With Client mode (to which you are referring as *standard* IPSec) only the
client can setup traffic to the main office because PAT is used.

When using NEM your main office can also setup traffic to the remote vpn
site because no PAT is used but routable addresses.

For configuration guides and in depth explanation check the Cisco site.

Br.
Robby
_______________________________________________
firewall-wizards mailing list
firewall-wizards@xxxxxxxxxxxxxxxxxxxxx
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards


Relevant Pages

  • RE: Upgraded to sbs2003 now Cisco VPN access fails on some ids
    ... VPN connection with the external Cisco 3005 concentrator using Cisco VPN ... If so, based on my knowledge, the Cisco VPN client is a client side ... Microsoft can make no representation concerning ...
    (microsoft.public.windows.server.sbs)
  • RE: Cisco Client Cannot Connect Outbound
    ... Cisco VPN clients to establish the VPN connection with the external VPN ... server through Microsoft Internet Security and Acceleration Server ... the Cisco VPN client is a client side connection ...
    (microsoft.public.windows.server.sbs)
  • Re: Help with VPN and PIX 501
    ... >> Rather than use the Microsoft PPTP Client, why not use the Cisco VPN ...
    (microsoft.public.windows.server.sbs)
  • Re: refresh ad
    ... To avoid fragmentation Cisco VPN Client will reduce the MTU to 1300 on all ... > vpn tunnel from this site to the main head office where the intranet ... > ive a site having odd network behavoir relating to its vpn connection to ...
    (microsoft.public.win2000.active_directory)
  • cisco vpn 3000 linux client nat help
    ... I have been trying on and off for months to get the Cisco VPN 3000 ... client for linux configured. ...
    (RedHat)