Home > What are the pros and cons of selling firewall and VPN solutions as integrated bundles?
FAQ::
EMAIL THIS LICENSING & REPRINTS

What are the pros and cons of selling firewall and VPN solutions as integrated bundles?

07 Dec 2007 | SearchNetworkingChannel.com

Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   

When IPsec VPNs first emerged, most were purpose-built products, deployed either behind a firewall or on a firewall DMZ. But those architectures were short-lived. Today, nearly every firewall provides integrated VPN features.

About the author
Lisa Phifer is vice president of Core Competence Inc., a consulting firm specializing in network security and management technology. Phifer has been involved in the design, implementation, and evaluation of data communications, internetworking, security and network management products for nearly 20 years.

It makes a lot of sense to terminate site-to-site VPN tunnels on a firewall. Doing so can easily protect traffic sent between branch offices and a central site, without adding extra hops, reassigning addresses, or breaking IPsec by sending it through Network Address Translators. Firewalls can apply security policies to site-to-site traffic -- for example, stopping worms from propagating across tunnels or remapping private subnets. And with an integrated firewall/VPN, customers have just one platform to provision, monitor, troubleshoot and maintain.

Most firewalls can also terminate remote client IPsec tunnels, but firewalls do not excel at meeting remote access needs. It's an uphill battle to pitch an integrated VPN/firewall as a remote access solution when there are many standalone VPN concentrators that offer more attractive features. Selling an integrated VPN for remote access complicates firewall sizing, pricing and interoperability. Getting those right depends on the customer's remote workforce needs, devices and usage habits, all of which tend to change over time and are harder to get a handle on than interoffice traffic.

Return to the virtual private networks FAQ guide and read the rest of Lisa's expert responses.


Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


RELATED CONTENT
VPN Equipment and Services
Virtual Private Network (VPN) Podcast
How would a value-added reseller sell a new SSL VPN concentrator to a customer who already has a firewall/VPN?
For VPNs with both browser- and client-based access, why would anyone use the client-based method?
As customers start using mobile devices, they are using fewer VPN-enabled desktops. Are there new VPN solutions that can be offered for mobile workers?
Access limitation on Cisco 3000 concentrators
Implementing ISA servers
Avaya Partner Program Checklist
VPN fundamentals for VARs and network consultants
SSL VPNs: Five popular products compared
NetMotion Wireless Partner Program Checklist

Selling virtual private network solutions
How would a value-added reseller sell a new SSL VPN concentrator to a customer who already has a firewall/VPN?

RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary


HomeTopicsITKnowledge ExchangeTipsMultimediaWhite PapersBlogsEvents
About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
SEARCH 
TechTarget provides enterprise IT professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective IT purchase decisions and managing their organizations' IT projects - with its network of technology-specific Web sites, events and magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Reprints  |  Site Map




All Rights Reserved, Copyright 2006 - 2008, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts