Firewall-1

[FW-1] VPN Tunnel stability and throughput performance between 2 Nokia I

Subject: [FW-1] VPN Tunnel stability and throughput performance between 2 Nokia IP440's running NG FP3.
From: Alan Choyna <achoyna AT PATHF DOT COM>
To: FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM
Date: Mon, 26 Jul 2004 14:39:20 -0500
Hey people,

We're moving to a co-locate environment, and my client wishes to use a VPN
tunnel between 2 Nokia ip440's running NG PF3 to connect the internal
Network to our DMZ networks at the co-locate space about 50 miles away.

l'm pitching for a dedicated T1 line to our IP440 at the co-lo, thereby
offering best security, and stability, without the need for an extra
firewall (with the associated licensing/support costs), whilst they wish me
to use an available shared T3 connection with an encrypted tunnel to our
co-lo firewall.

Is a VPN tunnel hard to set up? and once set up, how stable is it? Will we
have to manually reconnect/authenticate often? or would it be rock solid?

Another question is throughput performance. Although mostly we will not be
transmitting lots of data, late at night l will be backing up about 20 gigs
of data every week or so. How much bandwidth does encryption use (DES3)?
Would this large throughput make the tunnel less stable?

Thanks in advance,

Alan


Alan C. Choyna
Senior Consultant

Pathfinder Associates, LLC

<http://www.pathfinderassoc.com/>http://www.pathfinderassoc.com
Internet Strategy Business Consultants
<mailto:achoyna AT pathfinderassoc DOT com>mailto:achoyna@pathf<mailto:achoyna AT 
pathfinderassoc DOT com>.com

Business telephone (312) 372-1058. Mobile (773) 255-6662


=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================

<Prev in Thread] Current Thread [Next in Thread>