cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
407
Views
0
Helpful
1
Replies

VPN gateway device on DMZ interface

Phil Williamson
Level 1
Level 1

A 3rd party wishes to place their IPSec VPN box on my PIX515R DMZ interface instead of configuring a firewall to PIX tunnel or even a VPN client connection. I have public IP space available for the purpose. What issues do you see with this if any other than it's reinventing the wheel and allowing them to sell their box?

1 Reply 1

tvanginneken
Level 4
Level 4

Hi,

the 3rd party company probably have a VPN device at their site that is form the same vendor as the VPN device their are trying to put in your DMZ.

They probably also have a lot more of those VPN devices at ohter sites. From configuration and management point of view, it's a lot easier for them to have their own device from same vendor at each site. That way they are not dependent of the VPN device (your pix in this case) at the other site.

Kind Regards,

Tom