VPN Technology: Burhan Cheema CCIE#44786 1
VPN Technology: Burhan Cheema CCIE#44786 1
VPN Technology: Burhan Cheema CCIE#44786 1
CCIE#44786
VPN Technology
The main focus of this chapter is on VPN technology, protocols, and concepts. This chapter presents a
comparison of multiprotocol label switching (MPLS), IP security (IPsec), and Secure Socket Layer (SSL) to
give you a good understanding about the benefits and shortfalls of choosing each technology for a VPN
solution. This is a standalone section that can be read without working through Chapter 1, "The VPN
Technology Promise: Secure Access from Anywhere to Anything." Even though this chapter is more
technical in nature, it is essential for managers and CIOs of organizations considering deployment of a
VPN solution to review this material. The comparisons in this chapter help develop an appreciation for
the design considerations, deployment challenges, and management of technology for a successful VPN
solution implementation.
In this technology primer, three technologies are discussed with VPN deployment in mind, and a
comparison is provided because the main focus of this Short Cut is making a decision about how to
implement a VPN. You can learn specifics about the technology, protocols, and concepts in detail from
several other Short Cuts after you've made your initial decisions. This chapter helps you compare key
factors for the following three VPN technologies before you make your implementation decision:
MPLS
IPsec
SSL
Note - For a detailed look at MPLS-based VPNs, consider reading MPLS and VPN
Architectures, by Ivan Pepelnjak and Jim Guichard.
For a detailed look at IPsec VPNs, consider reading IPSec VPN Design, by Vijay Bollapragada, Mohamed
Khalid, and Scott Wainner.