I am planning to use 3 x 1710 routers for a 3 sites VPN (1 head office 50 users, 2 branch offices 40 and 10 users) with 1 x PIX 515E at HO. Each site will have a fibre optic ISP connection, with ethernet cable termination. I prefer the 1710 in each branch office than a PIX 506, because 1710 comes with hardware VPN acceleration. I will place the PIX 515E in the HO, but IPSec will be terminated on the 1710. This seems to provide good VPN performance at signicantly lower cost.
Is this a right solution? Will it compicate the issue or I should better off using 3x PIX (1 515E and 2x 506E)?
Table of ContentsIntroductionVersion HistoryPossible Future
UpdatesDocuments PurposeNAT Operation in ASA 8.3+ SectionsRule Types
Network Object NATTwice NAT / Manual NATRule Types used per SectionNAT
Types used with Twice NAT / Manual NAT and Network Obje...
Table of Contents Introduction:This document describes details on how
NAT-T works. Background: ESP encrypts all critical information,
encapsulating the entire inner TCP/UDP datagram within an ESP header.
ESP is an IP protocol in the same sense that TCP an...