OT: SSL Remote Access VPNs [7:73253]

2003-07-30 Thread John Neiberger
We've researched a couple of SSL VPN products like the Neoteris box, for
example, and we're starting to look into a few others. We're looking for
something to allow secure remote access to select internal applications.
Support for telnet, SSH, and TN3270 is required, and we prefer clientless
solutions. We also require secure LDAP authentication and support for
two-factor authentication whether that be smart cards, client-side
certificates, or whatever.

A number of solutions are available from a number of vendors including
Nortel, Neoteris, Aventail, Netilla, Whale, and Aspelle.  If any of you are
using these products would you care to comment on your impressions? Any pros
and cons regarding your chosen solution or product?

Many thanks,
John




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73253&t=73253
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: OT: SSL Remote Access VPNs [7:73253]

2003-07-30 Thread Joseph Brunner
www.netscaler.com

their box does compression, and it has so many dos prevention and
other killer things it blows away the competition. We went with it
based on the performance it had during a syn flood blizard, and their
ssl vpn rocks!


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73258&t=73253
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: OT: SSL Remote Access VPNs [7:73253]

2003-07-30 Thread spiegel john
How does it compare with other vendors - Neoteris??  


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73259&t=73253
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: OT: SSL Remote Access VPNs [7:73253]

2003-07-31 Thread John Neiberger
 Joseph Brunner 7/30/03 5:24:39 PM >>>
>www.netscaler.com 
>
>their box does compression, and it has so many dos prevention and
>other killer things it blows away the competition. We went with it
>based on the performance it had during a syn flood blizard, and their
>ssl vpn rocks!

That's one of the units I've been asked to look at. It looks good on paper.
What sorts of applications are you using it for? Are you doing much
telnet/TN3270 or SSH?  How about LDAP authentication?

John




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73308&t=73253
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: OT: SSL Remote Access VPNs [7:73253]

2003-07-31 Thread Joseph Brunner
I am running compression based ssl vpn for extranet. this allows
without a client 8 to 1 or so compression ratio for mostly spreadsheets sent
over port 80.

also the box is managed by ssh.. what do you mean by telnet ?

most protocols such as ldap, exchange, etc, are very well compressed and
work over the ssl vpn.


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73319&t=73253
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: OT: SSL Remote Access VPNs [7:73253]

2003-07-31 Thread John Neiberger
 Joseph Brunner 7/31/03 4:10:58 PM >>>
>I am running compression based ssl vpn for extranet. this allows
>without a client 8 to 1 or so compression ratio for mostly spreadsheets
sent
>over port 80.
>
>also the box is managed by ssh.. what do you mean by telnet ?
>
>most protocols such as ldap, exchange, etc, are very well compressed and
>work over the ssl vpn.

By telnet I was asking if you were using a web-based telnet client to allow
telnet or SSH access to internal devices like routers, switches, or servers.
I'm especially interested if you're allowing TN3270 access to mainframe
applications.

Thanks,
John




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73322&t=73253
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]