FirewallWizards
[Top] [All Lists]

Re: [fw-wiz] Benefits of Network Extention Mode vs IPsec

To: "Firewall Wizards Security Mailing List" <firewall-wizards@listserv.cybertrust.com>
Subject: Re: [fw-wiz] Benefits of Network Extention Mode vs IPsec
From: "Robby Cauwerts" <robby@cauwerts.be>
Date: Fri, 19 Jan 2007 14:48:39 +0100
Delivered-to: sp-com-lists@consult.net
Delivered-to: fwwizards-list2@consult.net
Delivered-to: firewall-wizards@listserv.cybertrust.com
In-reply-to: <45AFEF95.9060606@codestorm.org>
List-archive: <https://listserv.icsalabs.com/pipermail/firewall-wizards>
List-help: <mailto:firewall-wizards-request@listserv.icsalabs.com?subject=help>
List-id: Firewall Wizards Security Mailing List <firewall-wizards.listserv.icsalabs.com>
List-post: <mailto:firewall-wizards@listserv.icsalabs.com>
List-subscribe: <https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards>, <mailto:firewall-wizards-request@listserv.icsalabs.com?subject=subscribe>
List-unsubscribe: <https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards>, <mailto:firewall-wizards-request@listserv.icsalabs.com?subject=unsubscribe>
References: <45AFEF95.9060606@codestorm.org>
Reply-to: Firewall Wizards Security Mailing List <firewall-wizards@listserv.icsalabs.com>
Sender: firewall-wizards-bounces@listserv.icsalabs.com
On 1/18/07, Craig Van Tassle <craig@codestorm.org> wrote:
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

I suppose you're talking about Cisco vpn stuff.

Can anyone point me to some good documentaion as why NEM is better then Standard
IPSec VPNS?

Basically: two two sides can initiate traffic.

With Client mode (to which you are referring as *standard* IPSec) only the client can setup traffic to the main office because PAT is used.

When using NEM your main office can also setup traffic to the remote vpn site because no PAT is used but routable addresses.

For configuration guides and in depth explanation check the Cisco site.

Br.
Robby




_______________________________________________
firewall-wizards mailing list
firewall-wizards@listserv.icsalabs.com
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards
<Prev in Thread] Current Thread [Next in Thread>