Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

VPN Network Design Question

Hi Folks,

I have some doubts about designing a topology for VPN.

I have 2 6506-E Switches and three fiber optic rings for local branch offices. Each ring begins on one 6506-E Switch and ends into the other 6506-E Switch. I have ASAs 5505 in each brach office and now I have to design the network in order to encrypt the data between branch offices and the main one.

I don't have enough budget to adquire the module for VPNs.

I need to know the pros and cons of the following possibilities:

  • to adquire VPN concentrators in the main office
  • to establish the VPN with existing routers (with encryption module)
  • to establish the VPN with dedicated ASAs to concentrate them
  • another solution??

Thanks in advance for your help.

Regards,

TITO

1 REPLY
VIP Super Bronze

Re: VPN Network Design Question

Hi TITO,

Since the 6500 do not do encryption by default, you would need to put a SPA-400 module in each 6500 and do encryption that way.  The other design would be to get small router at edge of each location (2900 or 3900 are good choices) and do the encryption between all small routers.  This way you you don't have to worry about touching the 6500.

HTH

Reza

193
Views
0
Helpful
1
Replies