cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
302
Views
0
Helpful
2
Replies

PIX 501 Port Segmentation for teleworkers?

r-lemaster
Level 1
Level 1

We're evaluating PIX vs. Netscreen & SonicWALL for teleworkers. Both

SonicWALL and Netscreen offer a port segmentation feature that allows the

corporate VPN to be extended to only specific ports. This means that Mom or

Dad can be on the company VPN, but anyone else on that home network (kids)

won't be able to access the corporate VPN. Does Cisco offer such a

feature or VLAN functionality, or do we have to use a Netscreen or SonicWALL

firewall for home users?

1 Accepted Solution

Accepted Solutions

pcomeaux
Cisco Employee
Cisco Employee

Sure, the Pix can offer similar functionality - but even better.

How about authenticating each user as they attempt to cross the tunnel?

User Level Authentication is a feature in 6.3 Pix OS.

http://www.cisco.com/univercd/cc/td/doc/product/iaabu/pix/pix_sw/v_63/63rnotes/pixrn63.htm#67805

This is more secure then simply letting unauthorized users simply move from one port to another on the Netscreen or Sonicwall.

peter

View solution in original post

2 Replies 2

pcomeaux
Cisco Employee
Cisco Employee

Sure, the Pix can offer similar functionality - but even better.

How about authenticating each user as they attempt to cross the tunnel?

User Level Authentication is a feature in 6.3 Pix OS.

http://www.cisco.com/univercd/cc/td/doc/product/iaabu/pix/pix_sw/v_63/63rnotes/pixrn63.htm#67805

This is more secure then simply letting unauthorized users simply move from one port to another on the Netscreen or Sonicwall.

peter

Ah, yes. this is much better. Thank you Sensei.

Review Cisco Networking for a $25 gift card