[123460] in North American Network Operators' Group
RE: Best VPN Appliance
daemon@ATHENA.MIT.EDU (John Lightfoot)
Tue Mar 9 13:55:36 2010
From: "John Lightfoot" <jlightfoot@gmail.com>
To: "'Scott Howard'" <scott@doc.net.au>,
"'Blomberg, Orin P \(DOH\)'" <Orin.Blomberg@doh.wa.gov>
In-Reply-To: <f1dedf9c1003090947pf13f6f2k4c182bd3fdf6937c@mail.gmail.com>
Date: Tue, 9 Mar 2010 13:54:51 -0500
Cc: nanog@nanog.org
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org
Can anyone tell me how to get the beta 64 bit client? Thanks.
-----Original Message-----
From: Scott Howard [mailto:scott@doc.net.au]=20
Sent: Tuesday, March 09, 2010 12:47 PM
To: Blomberg, Orin P (DOH)
Cc: nanog@nanog.org
Subject: Re: Best VPN Appliance
On Mon, Mar 8, 2010 at 11:50 AM, Blomberg, Orin P (DOH)
<Orin.Blomberg@doh.wa.gov> wrote:
> Thanks for the information. =A0I am just going on what we have been=20
> formally told by our onsite Cisco engineers on several occasions. =
=A0It=20
> may be that they were misinformed, or that they are trying to make the =
> sell for AnyConnect Licensing, but I had been going with the facts I=20
> had.
It was neither, at least not specifically on the side of your engineers.
Cisco had absolutely no plans to release a 64-bit IPSec client - not =
because
they couldn't (they have had a working version for some time), but =
because
they have been trying to kill off the product for years to try and =
migrate
customers to their newer products (ie, AnyConnect). So your Cisco =
engineers
were absolutely correct - at the time - in saying that there would never =
be
a 64 bit version.
Obviously it seems they have finally buckled to customer pressure (!) =
and
release a 64 bit version, which is good news for everyone except =
whoever's
job in Cisco it was to EOL the IPSec code. It's unfortunate that they
didn't take the obvious approach and put IPSec into AnyConnect when it =
first
came out, which would have avoided all of these issues.
(I used to work for Cisco in the Security Technology Business Unit, but =
I
don't any more so I'm obviously not speaking on behalf of anyone other =
than
possibly myself!)
Scott.