We are using a Cisco VPN Concentrator and connect to it with the win2k vpn
client over PPTP. It has proven to be secure and pretty stable. One warning
though, don't believe microsoft when they say you can take wINS out of the
equation and replace it with DNS. We connect to exchange over VPN, and
without WINS it was a nightmare, we had to re-instate our WINS
infrastructure just for exchange use over VPN. But, in the end, VPN
peformace was greatly increased once wins was back online, when it came to
network browsing. Hope this helps.


-TOny

-----Original Message-----
From: Benjamin Scott [mailto:[EMAIL PROTECTED]]
Sent: Saturday, October 27, 2001 7:38 AM
To: NT 2000 Discussions
Subject: RE: win2k vpn thoughts


On Fri, 26 Oct 2001, WebMeister wrote:
> It is not compatible with other IPSec VPNs as far as I know.

  The IPsec implementation in Windows 2000 does work with FreeS/WAN (the
Linux IPsec implementation), although not well.  I think you need to use
pre-shared secrets -- no public keys -- and configuration is a pain.  No way
to do a dynamic IP, either.  Microsoft seems to view IPsec as a way to
transport L2TP, rather than a full-fledged secure transport in itself.

  Microsoft still seems to favor PPTP as a VPN solution.  I cannot say how
well it works, as the security concerns with PPTP have kept me away from it.

-- 
Ben Scott <[EMAIL PROTECTED]>
| The opinions expressed in this message are those of the author and do not
|
| necessarily represent the views or policy of any other person, entity or
|
| organization.  All information is provided without warranty of any kind.
|


------
You are subscribed as [EMAIL PROTECTED]
Archives: http://www.swynk.com/sitesearch/search.asp
To unsubscribe send a blank email to [EMAIL PROTECTED]

------
You are subscribed as [email protected]
Archives: http://www.swynk.com/sitesearch/search.asp
To unsubscribe send a blank email to [EMAIL PROTECTED]

Reply via email to