Search /
Docfinder:
Advanced search  |  Help  |  Site map
RESEARCH CENTERS
SITE RESOURCES
Click for Layer 8! No, really, click NOW!
Networking for Small Business
TODAY'S NEWS
First iPhone worm spreads Rick Astley wallpaper
Four reasons to buy (and one reason to avoid) the Droid
Stimulus for tech and telecom $3B, but jobs still guesswork
Cisco MARS shuts out new third-party security devices
Verizon Droid buzz muted in Boston
Week in Google news: Google Dashboard, Droid fever, focus on e-commerce
Cloud computing, virtualization proponents getting antsy
Data center start-up offers energy saving software
Vendors scrambling to fix bug in Net's security
Judge dismisses lawsuit challenging Gartner's Magic Quadrant
Boston Celtics clamp down on spam
Cloud computing inevitable? Not so fast, educator says
Blue Coat slashes staff, buys S7 services company
Apple seeks new sheriff to lock up iPhones
Security /

How we did it with infra review

Related linksToday's breaking news
Send to a friendFeedback


We installed all of VPN/Security Management Solution Version 2.0 except for Cisco Secure Policy Manager Version 2.3 on a generic, dual-850 MHz CPU server with 512M bytes of RAM running Windows NT SP6a. We installed CSPM 2.3 on an identical system. We built a network of Cisco and non-Cisco devices, including five IOS routers, two PIX firewalls and a Cisco network intrusion-detection system sensor, as well as NetScreen Technologies and Nokia VPN devices. Although CSPM supports most recent versions of IOS and PIX, it doesn't support all versions, so we had to make some minor adjustments to bring every device in the testbed so that VMS 2.0 could support them.

We defined our topology in the various tools and let them autodetect information from the devices wherever possible. Then, we defined firewall rules for traffic between parts of the network and downloaded the configuration to each device. Using both inspections of the defined configuration and simple testing tools from WildPackets NetTools, we verified that the traffic permitted was what we had defined in our rules.

We then defined a VPN mesh and sent all the firewalled traffic through the VPN. Using WildPackets EtherPeek we again verified that traffic was encrypted; we also retested the firewall part of the configuration to check that no illegal traffic was getting through the VPN.

Finally, we used VPN Monitor to check on the status of the VPN. We generated traffic with Spirent Communications' SmartBits testing tools and verified that VPN Monitor was generating alerts and graphs to show traffic load and resource consumption.

Back to the main review

RELATED LINKS

Snyder, a Network World Test Alliance partner, is a senior partner at Opus One in Tucson, Ariz. He can be reached at Joel.Snyder@opus1.com.

Cisco VMS Version 2.0
Cisco upgrades security management suite, but tool integration lags.


NWFusion offers more than 40 FREE technology-specific email newsletters in key network technology areas such as NSM, VPNs, Convergence, Security and more.
Click here to sign up!
New Event - WANs: Optimizing Your Network Now.
Hear from the experts about the innovations that are already starting to shake up the WAN world. Free Network World Technology Tour and Expo in Dallas, San Francisco, Washington DC, and New York.
Attend FREE
Your FREE Network World subscription will also include breaking news and information on wireless, storage, infrastructure, carriers and SPs, enterprise applications, videoconferencing, plus product reviews, technology insiders, management surveys and technology updates - GET IT NOW.
* HOME    * RESEARCH CENTERS     * NEWS     * EVENTS

Contact us | Terms of Service/Privacy | How to Advertise
Reprints and links | Partnerships | Subscribe to NW
About Network World, Inc.

Copyright, 1994-2006 Network World, Inc. All rights reserved.