09-02-2008 10:46 AM - edited 02-21-2020 02:59 AM
Scenario:
The site hosts internet website and the traffic between the website and internet users should be secured via certificate etc. If SSL termination is desired on the internet edge device i.e. ASA firewall, what is the ideal solution since there are various technologies w.r.t to encryption such as SSL, VPN, IPSec etc.
Thanks.
09-02-2008 10:03 PM
Hi, it depends on the requirement.
If your Website serves only HTTP, now to provide security for Web traffic you use SSL.
- You can use the SSL VPN feature on the ASA box. But this will require License per user.
- use a Web Application Firewall .
Cisco ACE -
http://www.cisco.com/en/US/prod/collateral/contnetw/ps5719/ps9586/data_sheet_c78-458627.html
Also you can try ModSecurity (Opensource Web application FW).
09-02-2008 10:46 PM
Does the per user license mean, user at any point in time or something else ?
What happens if 500 user licenses have been purchased but 600 users initiate connections.?
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide