h**h 发帖数: 132 | 1 devices vary a lot, normally you have three choices
1> Nortel Contivity
2> Cisco 3000/5000/7100 VPN concentrator
3> Lucent SpringTide
for software solution, you have Checkpoint w/ VPN accelerator
I don't know if this is for VPDN (cisco's term for remote access VPN)
or enterprise VPN (site-to-site), it seems to me that you are talking
about site-to-site VPN.
The problem you have here is scalability. I never head about DSN,
but for Cisco's device, you have several different ways to do that
1> ISAK | m**t 发帖数: 1292 | 2
http://www.icsalabs.com/html/communities/ipsec/certification/certified_products/index.shtml
a few of the products provide policy based networking capability,
in that sense you can have a centralized server to distribute the
network policy. But guess the admin work is always there
For IPSec SA using IKE? it varies, deciding factors can be computing power,
auth method used in IKE(preshared key, Public key based, legacy auth method
xAuth), IKE mode users are using( Aggressive, main mode), algori |
|