ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Security management Toolkit

Cisco offers tunnel-less VPN

Richard Thurston ZDNet.co.uk

Published: 08 Dec 2006 17:06 GMT

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Cisco is to offer a tunnel-less VPN, which could solve some of the challenges of securing WAN traffic.

At the moment many organisations use IPSec encryption to create secure tunnels between company sites. However, using IPSec makes it much harder to use route-optimising protocols such as multiprotocol label switching (MPLS) and other WAN management tools.

Organisations using IPSec to encrypt company data currently need to set up a separate tunnel between each site and for each class of service.

Neil Rickard, vice president of research at analyst firm Gartner, said there was a lot of demand for MPLS VPNs, but added, "Existing tunnel-based encryption techniques make this difficult to do without sacrificing quality of service and meshing."

Cisco is trying to simplify the routing of encrypted traffic with its tunnel-less offering, which it calls Group Encrypted Transport, or GET VPN.

GET is a software upgrade to the company's increasingly popular Integrated Series Routers (ISR) family: 2 million ISRs have been sold globally. GET enables the ISR at the originating site to cache the packet header, encrypt the entire packet with IPSec and then re-insert the unencrypted header.

The header can then be used to route packets using MPLS, while the payload remains encoded. This process considerably reduces the number of VPN tunnels required, particularly for companies with a large number of sites.

Cisco has submitted the idea to the IETF, an international standards body.

But Gartner analyst Rickard said that this is not the first time Cisco has tried to solve the issue. "This is Cisco's second or third go at cracking the problem, but I'm very impressed with this offering," he said. 

He added: "Now that you can encrypt on top of MPLS, you can preserve the header info, so you get quality of service still applied. I think that will be very useful."

The analyst added that there wasn't a comparable offering from another vendor, although he was keen to point out that Cisco has more than 90 percent share of the router market anyway.

The networking company has built several further features into its ISRs. The routers now work on cable networks, including that of NTL:Telewest, the UK operator. Application acceleration and SIP trunking are two major new features, while the ISRs now have the option of local breakout to the PSTN in the event of network failure.

GET VPN is available in ISR products, as well as in Cisco's 7301 and 7200 routers, from December. The price of the software upgrade varies according to customers' maintenance contracts.

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Dell

Did you find this article useful?
375 out of 440 people found this useful


Full Talkback thread

0 comments


Company/Topic Alerts

Create a new alert from the list below:








Related Jobs

Solutions Architect, MPLS, Cisco, Layer 2 & 3, CCNP, IP, London City

The successful candidate will be technically proficient & have a good understanding of data networking (Cisco) including layer 2 & 3, MPLS, IP & dark ...

MPLS/VPN/ACTIVE DIRECTORY/JUNIPER - SUPPORT - 26k - HOLBORN

They are seeking a 1-3rd line desktop support analyst that may have worked with network eg juniper, mpls. Directory - Exchange - Juniper/MPLS - CCNA ...

Network Systems Engineer

Hands-on knowledge of configuration and maintenance of Cisco devices; routers in the 7200 family, Switches in the 6500+ range and Pix Firewalls - ...

Sentry Posts Blog

Mobile Security Expert: Your Camera Ph...

Mobile Security Expert: Your Camera Phone Got Hacked Author: Eric Everson, Founder MyMobiSafe.com Have you ever heard someone say “I’d like to be a fly on the wall in that room.”?... More

Post a comment

Skype - The Roach Motel

Here is an interesting article from The National Business Review, pointing out once again that you can never delete a Skype account. Never. Period. This is something I am familiar... More

Post a comment

The vPhone: Why Visa Should Go Mobile

The vPhone: Why Visa Should Go Mobile Author: Eric Everson, Founder MyMobiSafe.com With all of the success of Apple’s iPhone, there is a growing case to support a company like Visa... More

Post a comment

Featured Talkback

It seems to me this is a burden being placed on the wrong shoulders. There is not an It system in the world that can stop an individual taking information in their heads and spewing out at the nearest undesirable third party.

By: RonaldWilkins

Read full story:
Deloitte: People are still weakest security link

DOWNLOAD

Security Essentials

Security Downloads

There are masses of security suites out there for small businesses. Here's a selection to get you started

Editor’s Rating
1 Norton 360™
2 AVG Anti-Virus Free Edition Rating: 10
3 PC Tools AntiVirus Free Edition
4 Kaspersky Internet Security

See All Software

In association with Symantec