Security Basics mailing list archives

Re: SSL VPN


From: Eduardo Kienetz <eduardok () gmail com>
Date: Fri, 22 Jul 2005 00:31:27 -0300

On 7/20/05, andrew.bretten () kroger com <andrew.bretten () kroger com> wrote:
Since the original poster asked for an SSL VPN solution, OpenVPN is
(unfortunately) not a valid response.

So, perhaps the folks who develop OpenVPN are misunderstanding
something and should change their web site main page title to
something other then: "OpenVPN - An Open Source SSL VPN Solution...".

Neoteris , which is now sold by Juniper , who call it "Netscreen SSL VPN"
is an excellent out of the box solution, however it is not the cheapest
choice.

Personally I baked off Neoteris before they were bought by Netscreen,
against Nortel Alteon SSL when it was in beta and Aventail. (this was
almost 3 years ago).
Cisco I believe isn't really an SSL-VPN as far as being a http rewriter
like Neoteris/Aventail/Alteon....it simply uses SSL as a transport for a
network client VPN (correct me if I'm wrong).

If I had to tell you one cool feature to sell you on Neoteris I would
simply start with the word "flexibile"........it can act as a reverse
proxy/http rewriter, OR an ssl transport of TCP/UDP packets, OR as a full
on SSL VPN Network Client......all of it pushed to the remote PC on
connection, requireing zero management of the remote PC.   It supports
(with version 5) Mac/Linux/Windows in all these modes.

Neoteris/Juniper was and continues to be (in my opinion) a generation ahead
of its competition.

Andrew P Bretten
andrew.bretten () kroger com

Best regards,

-- 
Eduardo  Bacchi Kienetz
LPI Certified - Level 1 & 2
http://www.noticiaslinux.com.br/eduardo/


Current thread: