Virtual Private Networks
Virtual Private Networks (VPNs) provide site to site connectivity and
remote access for individuals to corporate networks.
The most obvious benefit of using site to site VPNs is the considerable
cost advantage compared to using leased lines for fixed connections between
offices.
To connect geographically separate sites, firewalls at these difference locations which also act as VPN Gateways can be connected together over the internet to form Virtual Private Networks (VPNs).
Remote access VPNs use a VPN Gateway at the host site, and a remote
device such as a laptop at the end point. VPNs use a combination of tunneling,
encryption, authentication and access control technologies to provide
site to site, remote access and extranet connectivity.
Most VPNS are IPSec (Internet Protocol Security) or SSL (Secure Socket
Layer), and your specific business requirements will dictate which type
you need.
IPSec VPNs
IPSec (Internet Protocol Security) VPNs use IKE (Internet Key Exchange) to negotiate VPN parameters and use secure encrypted tunnels to transmit data safely. They are used for both site to site and remote access connectivity.
IPSec VPNs require special client software on the end point device (e.g. laptop).
IKE can negotiate tunnels for one-to-one, one-to-many or many-to-many hosts. Connections of various types can flow over the tunnels, each destined for different servers behind the VPN Gateway, such as web, email, file transfer or VoIP.
SSL VPNs
SSL (Secure Socket Layer) VPNs use the public-and-private key encryption system, which also includes the use of a digital certificate for authentication. They are used for remote access connectivity.
SSL VPNS do not require an additional client on the mobile device. All that is required is a browser, which makes them easier to manage, and potentially less expensive to support.
Anyone with the correct username and password can access an SSL system from any PC connected to the internet. Enhanced security can be added with two factor authentication such as RSA security fobs or Aladdin eToken USB keys.
How can Metadigm help?
Because IPSec VPNs and SSL VPNs have distinct advantages, depending on your individual business requirements, it is vital to understand how they will perform in a particular environment. Metadigm can help you determine the best VPN solution for your needs, and will recommend which route to take.
We can also recommend a 2-factor authentication or single sign on solution to secure your VPN, and integrate, deploy and support the combined solution.
Metadigm partners with leading providers of vpn solutions including Check Point, Fortinet and Juniper. To find out more about our solutions and for independent guidance and advice on finding the solution you require, please call +44 (0)1763 268222 or email sales@metadigm.co.uk.
|
Check Point's vast range of security products includes IPsec and SSL VPNs, and laptop encryption solutions. Find out more > |
|
Fortinet's range of appliances offers full VPN features along with Firewall, gateway anti-virus, web URL filtering, anti-spam and intrusion detection with no per user licence limits. Find out more > |
|
Juniper's security products include integrated firewall/IPSec and SSL VPN equipment to extend secure access to mobile employees. Find out more > |
