Need suggestions of client software
Stephen Hope
shope at ENERGIS-EIS.CO.UK
Mon Feb 5 04:57:15 EST 2001
Dan,
the first answer has to be - go and try the Cisco clients.
That way you get support, which probably outweighs other considerations for
a commercial implementation.
There are 2 different cisco code sets.
1. OEM client from IRE (i think they changed the company name recently)
- this was the original client supplied by Cisco. You need at least V1.1, as
before this they documentation was inaccurate, and didnt cover talking to
Cisco devices. There are a few cisco tech notes about implementation on
their web site.
This version can support PKI or shared secrets.
Big problem with this is the config is complicated.
2. The ex Altiga client is now supported for comunication to Cisco
routers and PIX firewalls.
IMHO this client used to be the main reason Altiga remote access
concentrators sold so well.
You can set client config / policy at the central site and "push" it to
clients when they connect - this means client remote setup is just interface
for traffic and IP address of the concentrator. Dont know if the "push"
stuff has made it to the routers yet, but if so you will probably need IOS
12.1.xxx
Biggest problem we had recently was that there was no way in the Cisco
pricelist to buy the Altiga client separately from the concentrator, despite
the security specialists telling everyone this would be the new "strategic"
solution...
Of course, all this would be easier if you used the Cisco VPN 3000 box (the
old Altiga line) at the central site as well......
We have used NT and Win9x platforms - no idea with W2k, but it wasnt in the
support list a couple of months back. There are rumours of a beta client
around but i havent needed to look at that.
Good luck
Stephen
Stephen Hope C. Eng, Network Consultant, shope at energis-eis.co.uk,
Energis Integration Services Ltd, WWW: http://www.energis-eis.co.uk
Carrington Business Park, Carrington, Manchester , UK. M31 4ZU
Tel: +44 (0)161 776 4194 Mob: +44 (0)7767 256 180 Fax: +44 (0)161 776
4189
> -----Original Message-----
> From: Schlitt, Dan [mailto:dan.schlitt at SMARTS.COM]
> Sent: 01 February 2001 21:51
> To: VPN at SECURITYFOCUS.COM
> Subject: Need suggestions of client software
>
>
> We are looking for client software for use by remote
> employees and would
> like some suggestions. Comments from folks with experience using the
> software would be useful.
>
> We need a client that will use IPSEC and transparently do tcp, udp and
> icmp. It needs to run on NT 4.0 and optionally also
> windows2000. It needs
> to interoperate with the IPSEC in Cisco IOS 12.0. Initially
> we would like
> to stay away from PKI issues by using manually configured
> shared secrets
> for authentication.
>
> While I have lists of sources from a couple of web sites the lists are
> long and many of the sources are oriented toward OEMs or
> hardware and not
> user client software.
>
> I would appreciate any suggestions.
>
> /san
>
> --
>
> Dan Schlitt System Management Arts
> dan at smarts.com 1 North Lexington Avenue
> tel: (914)948-6200 x 7210 White Plains, New York 10601
> fax: (914)948-6270
>
> VPN is sponsored by SecurityFocus.COM
>
-----------------------------------------------------------------------------------------------------------
This email is confidential and intended solely for the use of the individual to
whom it is addressed. Any views or opinions presented are solely those of the
author and do not necessarily represent those of Energis Integration Services.
If you are not the intended recipient, be advised that you have received this
email in error and that any use, dissemination, forwarding, printing, or copying
of this email is strictly prohibited.
We have an anti-virus system installed on all our PC's and therefore any files
leaving us via e-mail will have been checked for known viruses.
Energis Integration Services accepts no responsibility once an e-mail
and any attachments leave us.
If you have received this email in error please notify Energis Integration Services Communications
IT department on +44 (0) 1494 476222..
-----------------------------------------------------------------------------------------------------------
VPN is sponsored by SecurityFocus.COM
More information about the VPN
mailing list