Re: VPN requirements



Am Wed, 26 Nov 2008 20:01:54 -0800 schrieb Dave {Reply Address in.Sig}:

dave wrote:
As a general principle, I try to run as little as possible on the
firewall machine itself to reduce the chance of compromising the whole
thing. So my solution is to open the relevant port in the firewall and
direct it to an internal machine which then handles the VPN stuff.


What about IPSec with NAT Traversal. you only need to open udp/4500 and
udp/500.
.