One of the things that drove us nuts with the 2000 ISA firewall was that problem of site to site VPNs. You could use PPTP or L2TP/IPSec to create a site to site VPN, but the problem was that most downlevel VPN gateways (PIX, Sonicwall, etc) use the less secure IPSec tunnel mode. The new ISA firewall fixes this problem with its support for IPSec tunnel mode. The problem is that each vendor has it own proprietary approach to creating a site to site VPN. Don't worry! Microsoft has come to our recue with a bevy of very cool docs that show you how to create the site to site VPNs with a variety of downlevel VPN gateways -- PIX, Astaro, SmoothWall and more! Check it out at:
http://www.microsoft.com/isaserver/techinfo/guidance/2004/vpn.asp
HTH,
Tom
Posted
Oct 05 2004, 07:22 AM
by
shinder