cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
253
Views
0
Helpful
2
Replies

Memory requirments for IPsec tunnels in PIX

sajsoft
Level 1
Level 1

Now all my 19 routers are connected to a 2600 router through GRE tunnels.We are going to implement PIX 515 E firewall after the 2600 router and IPsec tunnels which is going to terminate to a PIX 515E.

Currently 2600 router is having 128 MB RAM

The PIX firewall that is going to implement is having 64 MB RAM

Is this memory is sufficient to accept ipsec connections from 19 locations ?

2 Replies 2

sachinraja
Level 9
Level 9

hello

I hope its sufficient.. 19 tunnels on des or 3des ? its always better to have a VAC or VAC + cards if the pix is going to do lots of VPN processing like your case.. Once you have a VAC or VAC+ you can have close to 2000 ipsec tunnels supported in PIX.

VAC does hardware encryption inside ur firewall, which will offload the firewall from doing all these processing.

so, its better you consult your cisco partner and have a VAC in place...

Raj

Router IOS currently we have won't support 3DES ,Now going for DES in the First Phase.After the router IOS upgradation go for 3DES.

I don't think the management is ready to go for a VAC . If you know any cisco documentaion link Pls specify the link so that I can tell the management that 64 MB is enough .

Thanks

saj