Ummm, no not necessarily. Many firewall products terminate VPN conntections andOriginally posted here by chsh
Not being up on VPNs, wouldn't this be a function of your VPN server, not of the firewall?
either use their own authentication database or pass that chore on to another authentication
service like RADIUS.
Well checkout something small like the Nokia IP330 running Checkpoint NGCompared to what?
Out of the box, it crushes any netfilter based product I can think of. Sure you can
probably glue a box together and gain some of the features. If you use a commercial product, you usually have a hard time compiling in new features if the vendor even allows it. If you roll your own, lots of things are possible if you have the time. I just don't have that kind of time.
Really. Cool which ones? I would love to check em out..I think almost all *nix firewalls are capable of being run off read-only media like CD. [/B]