I am curious about recommendations on remote office connections when VPNs are involved. Today, in two separate occasions I ran into designs that showed remote sites with a small 1720 router and a PIX 506. The 506 terminated one end of a tunnel back to the core PIX and the 1720 facilitated the frame connection. All traffic will be going back to the core, then if needed, to the Internet through the central sites main connection.
Why cant you just use the 1720s ability to terminate a tunnel and drop all non-encrypted traffic and eliminate the need for the PIX? This would reduce the costs of both the initial purchase as well as ongoing support. What are the downsides to a design without a PIX at the remote site? Thanks!! Jeff Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=45315&t=45315 -------------------------------------------------- FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

