Documente Academic
Documente Profesional
Documente Cultură
VPN Solutions
• Introduction to VPNs
• Cisco Remote Access VPN
Solutions
• Cisco Site-to-Site VPN
Solutions
• Cisco Firewall-Based VPN
Solutions
B A N K
Site--to
Site to--Site Leased Line
Site-to-Site Extend Connectivity
Internal Frame Relay Increased Bandwidth
VPN
Connectivity ATM Lower Cost
Biz--to
Biz to-- Biz Fax
Extranet Facilitates
External Mail
VPN E-Commerce
Connectivity EDI
Mobile User
POP
Internet VPN
DSL
Cable Central Site
Home Telecommuter
Site-to-Site
Remote Office
New
VPN 3015 VPN 3002
Remote VPN 3080 VPN 3030
VPN 3005 Hardware Client
Access VPN 3060 Concentrator
Concentrators VPN 3000
Cisco VPN 3000 Concentrators
Software Client
Site-to
Site- to--Site 3600 900
7200 7100
IOS Routers 2600 800
7100 3600
1700
Firewall-Based
Firewall- Pix 535 Pix 525 Pix 515
VPN Pix 506
Pix 525 Pix 515 Pix 506
Pix Firewall
• Introduction to VPNs
• Cisco Remote Access VPN
Solutions
• Cisco Site-to-Site VPN
Solutions
• Cisco Firewall-Based VPN
Solutions
HTML-Based
Management
VPN Overview © 2001, Cisco Systems, Inc. www.cisco.com/go/vpn 9
Remote Access VPNs
Cisco VPN 3000
• Connection of remote sites, users and partners across VPN
• High density, low bandwidth connections
Telecommuter
Internet VPN
POP
Central Site
Mobile Customer
• Single-click installation
• Easy to manage
User-transparent configuration
Centralized policy management
• Easy to operate
• Supports “split tunneling”
• For Windows 95, 98, 2000 or
NT
environments
Encryption Cards - 0 1 2 4
§ Modular
§ Expandable
§ Redundant / VRRP
§ Hardware Encryption
§Extensive Instrumentation
§2U Form Factor
Cable Modem
Home Office
Front
Basic 3002 w/o Hub 3002 unit with 8 Port 10/100 Hub
§ External 6 foot power with country specific pigtail cord
• Console uses RS-232 signaling and RJ-45 connector
• Ethernet ports are 10/100 Mbps
• Hub supports Auto-MDIX eliminating x-over cables
• Recessed reset switch returns unit to default configuration
• 6x8x2” size with flat top and wall mount key holes
• Silent, convection cooled operation
• FCC Class B Certification, CISPR, CUL, others
Coming later...
Coming later...
• Introduction to VPNs
• Cisco Remote Access VPN
Solutions
• Cisco Site-to-Site VPN
Solutions
• Cisco Firewall-Based VPN
Solutions
??
Cisco VPN Routers VPN Appliances
IPSec & PKI Support P P
Routing Across VPN P O
Multicast Across VPN P O
Multiprotocol Support P O
Voice-Ready VPN P O
Application-Aware QoS P Limited
Integrated Firewall P Some
Integrated WAN Connectivity P Limited
Single-Box Solution for Remote P O
Office Deployments
Device Infrastructure Management P O
Main Office
Regional
Internet
Office
Cisco
Cisco2600
2600&&3600
3600Series
Series
•VPN-optimized routers
•VPN-optimized routers
connecting
connectingbranch
branchand
and Cisco800
800&&900
900Series
Series
Cisco
regional
regionaloffices
officesatat •VPN-optimizedrouters
routersfor
forISDN,
ISDN,
Small Office/ •VPN-optimized
nxT1/E1
nxT1/E1speeds
speeds Home Office DSL,and
andcable
cableconnectivity
connectivity
DSL,
Business-class security
C3662--2FE/VPN
C3662
§ Cisco 3662 Router, Dual 10/100, AC,
AIM-VPN/HP, IOS Plus Firewall/IPSec
• Introduction to VPNs
• Cisco Remote Access VPN
Solutions
• Cisco Site-to-Site VPN
Solutions
• Cisco Firewall-Based VPN
Solutions
PIX 535
Cost
PIX 525
PIX 515
Functionality
VPN Overview © 2001, Cisco Systems, Inc. www.cisco.com/go/vpn 41
PIX Product Line Overview
http://www.cisco.com/GO/VPN