Remote Access SSL & IP SEC VPN
Secure Sockets Layer (SSL), the protocol developed by Netscape for transmitting private documents via the Internet is now emerging as a leading contender in the VPN space. It is already used to secure the world of e-commerce. Analysts and the press are giving more attention than ever before to SSL VPNs and its usage is on the rise. In fact, according to an Infonetics Research report entitled "VPN and Firewall Products," by the end of 2005, sales of SSL VPN products should have reached $871 million.
This increased usage can be attributed to the fact that SSL is easier to install than traditional IP Security (IPSec) based VPNs. SSL is also easier to support in the long run, which typically results in long-term cost savings.
So does this mean companies should forget about traditional IPSec VPN solutions in favor of SSL? No, as both IPSec VPNs and SSL VPNs have their individual merits and hence it is a case of selecting the right tool for the job. IPSec VPN is established as the de-facto standard for site-to-site VPNs. If that's what your company requires, IPSec will do the job well. If, on the other hand, you are looking to implement a secure remote access or extranet solution, you may want to consider an SSL VPN solution.
The appeal of proven security, easy deployment, and simpler administration
SSL includes client and server authentication and data
encryption for Web based applications. It is a higher-layer security protocol,
sitting closer to the application, which means that compared to IPSec, it can
more easily provide the granular access control that remote access and extranet
VPNs require. SSL VPNs deliver user level authentication, ensuring that the
right people have access only to the right resources.
In addition to proven security, SSL VPNs offer users the benefit of "anywhere
access." This is because SSL is included in standard browsers like Microsoft
Internet Explorer and Netscape thereby offering the possibility of a clientless,
other than the browser, solution. Users can access their applications from
anywhere they have Internet access, whether it be an internet café, airport
kiosk, another person's computer, their home computer over broadband or even
using a wireless device. In addition, SSL VPNs can successfully traverse
firewalls and can handle network address translation (NAT) issues, which can be
problematic with IPSec based VPNs.
Ongoing administration is simpler with an SSL VPN than with an IPSec VPN. This
is because users can securely access Web based applications from any browser,
SSL VPNs thus eliminate the administrative headache of distributing and managing
VPN clients. This works well for both remote staff and customer access. Business
partners also benefit because SSL provides companies with a high level of
security, yet because partners aren't required to add any equipment to their
network, SSL VPNs are easier and less intrusive than traditional VPNs in partner
environments.
To see more information on SSL - VPN solutions.
To see more information on an IPSEC Protel Solution.
