Al,
#I am looking to building my own firewall and running some kind of VPN for
a
#branch office in a employee's home. I would like to implement this
solution
#for mobile sales folks too. I have the time to learn and build my own
this
#is why I do not want to purchase a FW/VPN solution. I am concerned and
#confused on how a remote user would gain access with out some kind of
client
#vpn software. I know that basically one could dial into a RAS server or
if
#the company has a permanent Internet connection a vpn could be established
#through the Internet. My company has the latter type. I am pretty good
#with Unix so I have no problem with trying to build a Fw/VPN with that OS.
#I am most concerned with the end remote user. I would want it to be
#transparent as possible.
I think you have two questions here.
1. What is a good Firewall/VPN solution?
2. Does the VPN portion of the above solution have client software that is
easy to use?
For a low cost firewall/VPN solution my first recommendation would be
OpenBSD running IPFilter and their IPSec implementation. My second would
be Linux running IPChains and their IPSec solution. I would also suggest
getting the "Building Linux and OpenBSD Firewalls" book. I bought mine
from Amazon. I don't know anything about the client VPN software for
either but after the initial install there really shouldn't be anything
that your home user has to do except dial-out and login. My experience
with commercial IPSec implementations is that the user side of things after
the install is pretty simple.
Regards,
Jeffery Gieser
-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]