<(E-Mail Removed)> wrote in message
news:(E-Mail Removed) oups.com...
> I'm thinking VPN may be the answer (MS VPN). There is a T1 between the
> sites and both have Cisco firewalls, but I have no more interfaces on
> the CA pix or else I would just keep that box on a routable address.
> Haven't had to setup the VPN before, is there a way to make it a
> permanant link?
>
My first consideration would be for a VPN between the pixes, rather than an
MS VPN.
For the MS VPN to work the pixes will have to be configured to allow that
VPN traffic through no matter where it is from, whereas a pix to pix VPN can
be guaranteed to come from the appropriate box - it just keeps the decision
a bit further away from the servers.
J.T.
|