New Zealand ADSL Mailing List


RE: Alcatel STP 510 and 610

From: Derek Nelson <derekn_at_Interconnect.co.nz>
Date: Tue, 20 Aug 2002 09:19:58 +1200
Message-ID: <C1DA9D2F57FAD511B9AF0008C7393BE20E5B8C@ANGURTH>

mmm... looks nice... has all the latest and greatest in IPSec VPN tunnels -
AES, SHA-2, RC5, PKI...

except...

a packet-filtering firewall? Just packet filtered? not stateful? You gotta
wonder at that. I'm sure it isn't ICSA certified either...

It's all very well having great VPN functionality, but if your firewall
isn't up to scratch and it gets compromised - what's the point of a VPN???
Also, does not support RADIUS or SecureID for XAUTH - only supports PAP and
CHAP.

Won't be replacing my router/firewall combo...

My 2c worth...
 - Derek.

>-----Original Message-----
>From: Bjorn Nilsen [mailto:lists@valhalla.net.nz]
>Sent: Thursday, 15 August 2002 2:50 p.m.
>To: Steven Perich; ADSL List
>Subject: Re: Alcatel STP 510 and 610
>
>well the Alcatel web site has details for it
>http://www.speedtouchdsl.com/prod610.htm
>
>----- Original Message -----
>From: "Steven Perich" <steve@clubpoint.co.nz>
>To: "ADSL List" <adsl@lists.unixathome.org>
>Sent: Wednesday, August 14, 2002 11:05 AM
>Subject: Alcatel STP 510 and 610
>
>> Hi guys
>>
>> We're looking at integrating Alcatel's STPs into a bid we're
>working on
>> right now. I just spoke to a guy at Alcatel and he tells me
>that the 510
>> can pinhole ESP and IKE which is great. He also tells me
>that the 610 is
>> coming out in a few weeks - with believe it or not - IPSec
>built into it
>> (thus able to terminate site-to-site tunnels)
>>
>> Anyone here heard of / can validate such rumours?
>>
>> Steve

-- 
This message is part of the NZ ADSL mailing list. 
see http://unixathome.org/adsl/ for archives, FAQ, 
and various documents. 
To unsubscribe: send mail to majordomo@lists.unixathome.org 
with "unsubscribe adsl" in the body of the message 
 
Received on Tue Aug 20 09:25:23 2002

This archive was generated by hypermail 2.2.0 : Thu Nov 30 11:48:24 2006 EST