Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Rhinorhino on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Cisco 6509 -potential SSLVPN card implementation

Status
Not open for further replies.

hellboy101

Programmer
Joined
Aug 31, 2005
Messages
247
Location
US
Hello all-

We have a 6509 core switch where all our users and essentially our server port to.. all blades hence ports are on vlan 1. We were objectively looking at purchasing an SSL VPN appliance either thru Juniper and/or another competitor.

I've recently read that Cisco brought an SSL VPN card that can be implemented on the Catalyst 6509. What are the caveats in taking this approach as far performance, reliability etc instead of just deploying an SSL VPN appliance.

Plus, our core switch is way inside our permiter router, and furthermore our PIX firewall. This card would secure and create a tunnel at layer 4 to 7.. So I'm wondering, wouldn't the SSL VPN appliance be better? placed at a higher scale inside the perimeter router but in front of the PIX.

Just look for ideas from the professionals.

Thanks for any support ..enjoy!
hb101
 
I would advise against it.. the 6500 platform is a router/switch..

I don't agree with what cisco is trying to make this platform do. They have firewall, VPN, IDS, NAM, etc.. blades for this box. It can do too many things. With these features brings code instability and operability issues with certain types of modules.


I would advise to keep the SSL VPN external to this box, let this box do what it was meant to do, and thats route/switch.


BuckWeet
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top