Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Chriss Miller on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Appletalk Zone's Pix VPN

Status
Not open for further replies.

edzy55

MIS
Joined
Jul 12, 2001
Messages
103
Location
GB
Hi all

Am I correct in saying that pix's only handle ip traffic? I've been given the task of trying to setup zone's across a vpn I configured between 2 different site's. Basically, I have a pix 515 that has an ipsec tunnel to a 506 at the remote site. This I got to work fine, however people want zone's setup now at the different offices that talk to each other. I'm under the impression that this can be done from a router at the private side of each pix and tunnel through that way with GRE. Is this correct and can anyone point me in the right direction?

Thanks in advance.

The Inspector
 
are there servers on each side supporting the zones. IF so what kind? Jeff
 
Jeff

Yes, server's on both sides. NT domain on the one side and a standalone win2k box on the other. Am I correct in saying that the routers I setup either side of the vpn and pix's will control the zone's? Thanks

The Inspector
 
no the pix cares less about appletalk zones but if you had a server on each side that supported the appletalk zone and had the ability to encapsulate appletalk in ip such as aurp then that could ride through the firewall. Jeff
 
Jeff

Thxz for your reply. Sorry but I'm a total appletalk rookie. I'm currently trying to get as much info about aurp as poss for study. Can you give me a little help with why you asked what server's I have at each end of the vpn. Can I configure a tunnel between these servers that allow aurp to the different networks? How would you go about getting this setup with my current kit. Much Thanks

The inspector
 
the basics are this the appletalk protocol can run in your 2 remote networks and you can use AURP which encapsulates appletalk traffic in an ip header in this form it can travel thru the Industry standard IPSEC VPN tunnel.

Can you do it with your current setup I'm not sure, you can do it with routers from apple, Novell some appliances id' bet from farallon etc but the NT/2000 pro combination I can look a little for you but I've only used 2000/NT for apple file services not for actually routing the traffic.

I'll look around a little for you. but gotta run for now! Jeff
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top