Skip Links

Network World

  • Social Web 
  • Email 
  • Close

Vyatta adds VPN capability to its open source router

Linux-based router company says its router/firewall/VPN code matches Cisco, Juniper offerings
By Phil Hochmuth , Network World , 03/12/2007

Vyatta is adding VPN support to the latest release of its open source router/firewall product. Vyatta says with its IPSec VPN function, combined with stateful firewall and advanced routing features, OFR provides a complete one-box alternative to routing/firewall/VPN boxes from Cisco and Juniper for small and midsize companies.

Launched this week, Vyatta's Subscription Edition 2.0 of its Open Flexible Router (OFR) includes site-to-site IPSec VPN capabilities, letting users establish secure VPN tunnels between a company headquarters and remote offices. Similar to commercial small and midsize or other open source enterprise products, Vyatta's OFR 2.0 software can be downloaded for free, but costs $497 for a one-year support subscription, which includes software updates and patches, technical support and troubleshooting. The Linux-based OFR code can also be preloaded onto Dell PowerEdge server hardware, starting at $1,797.

OFR is based on the Debian Linux distribution and the eXtenseible Open Router Platform (XORP), an open-source IP routing stack. New to the OFR package is code from the open-source project Open Secure WAN (OpenSWAN), a software package for running IPSec VPNs on top of a Linux.

Version 2.0 of the Vyatta code was beta-tested by KeyMark, a Liberty, S.C.-based document management and automation company with offices in Virginia, Pennsylvania and Indianna. Now the software is supporting a site-to-site VPN between South Carolina and Virginia.

"It's been working flawlessly since we brought it up over a month ago," says David Nalley, network administrator for KeyMark. "It's one of the simplest open-source IPSec configurations I've done," compared to previous open-source IPSec VPN technology, such as FreeSWAN and OpenSWAN, which he has worked with previously, he adds. Listen to the interview (10:52).

KeyMark uses Dell PowerEdge 2950 servers with Gigabit Ethernet LAN ports, and a Sangoma PCI-X T-1 card for connecting to the WAN. (This box replaced a Cisco 1700 series router).

Nalley says it was relatively easy to map the Cisco routing and firewall settings to the Vyatta router configurations. The only issue he encountered during the switch were some configuration problems with frame encapsulation

"There were some things that worked on Cisco that did not work on Vyatta when we first tested it," he says. "But it ended up being more of an issue with the [T-1 card] as opposed to a Vyatta issue."

Partner Content

Simplify Your Branch Infrastructure

Learn how to simplify your branch infrastructure while dramatically increasing app performance with Citrix Branch Repeater.

Download the Free Info Kit

Next-Gen Load Balancing

Free Guide: "Next Gen Load Balancing: 8 Things You Need to Handle Today's Network Traffic" shows you the functionality needed in your next load balancer.

Download the Free Guide

Accelerate Your Web Apps by up to 5x

Free Guide: "The Secret to Getting Maximum Speed from your Web Applications." Learn how you can deliver Web apps up to 5x faster.

Download the Free Guide

Comments (1)
Login
Forgot your account info?

Vyatta adds VPN capability to its open source routerBy Cisco Subnet on March 12, 2007, 5:59 pmVyatta, a start-up that launched in October an open source router targeted at replacing Cisco technologies (see story), this week added VPN support to its router/firewall...

Reply | Read entire comment

View all comments

Add comment
Anonymous comments subject to approval. Register here for member benefits.
Have a NetworkWorld account? Log in here. Register now for a free account.

Videos

rssRss Feed

Whitepapers

Ensuring Network Integrity, Continuity and Process Enforcement with Route Analytics

This white paper shows how route analytics is used to ensure that dynamic IP network behavior...

Advancing the Economics of Networking

Aging network systems and old habits have dictated how businesses spend their IT budgets. As a...

Implementing HA at the Enterprise Data Center Edge to Connect to a Large Number of Branch Offices

This paper reviews the problem of creating a network where the dynamic availability of services is...

Webcasts

WAN Optimization Editorial Webcast

Get caught up to speed on the latest WAN optimization developments in this informative Editorial...

Transforming the Enterprise WAN Edge: Video from Cisco

Life on the edge of your WAN has changed dramatically. With the need to deliver advanced services,...

PoE Plus: Impact on the PoE Market

The standard for Power over Ethernet (PoE), IEEE Std. 802.3af(tm)-2003, advanced networking,...

Special Reports

Ethernet Services: WAN options mature

WAN Ethernet services are reliable, cost-efficient offerings that are widely available and in a...

Get More From Your WAN

Download this Network World Executive Guide and get information that details how real-world...

WAN Optimization: How to rev up sluggish applications

WAN optimization technology is maturing and buyers are more comfortable than ever with tools that...

Get instant email notification when white papers, webcasts, executive guides are added to our library. Stay informed and up-to-date with the latest on IT Technologies with Network World's Resource Alerts.