hellew, IPsec is not a firewall, its a tunneling and (optionally)encryption standard .Do u need a firewall or secure transport? I dont know about snapgear, but the best commercial box is the Nortel Contivity - most big firms worldwide use this for ipsec. The key issue here is, how many sessions are estimated? Linux box plus its hardware can only take so much, since encryption/decryption are processor-intensive, so you might have a drop in link throughput - so size the box carefully.
regards, kishor
--- Ashok Iyer ashok_linux@yahoo.com wrote:
hi all i want to use two machines as gateways as
vpn
for connecting two corporates also i want to use IPsec as firewall what can i do now???
[snip] readup freeswan.org. Thatz all u'll ever need.
There r also numerous commercial implementations of FreeSwan available. C wat u find suitable.
By far the best commercial product available is snapgear. Try www.snapgear.com.
-- Ashok
Do you Yahoo!? Yahoo! News - Today's headlines http://news.yahoo.com
__________________________________________________ Do you Yahoo!? Yahoo! News - Today's headlines http://news.yahoo.com