Home > Windows Server Tips > Web Management > VPN acronym roundup
Windows Server Tips:
EMAIL THIS
 TIPS & NEWSLETTERS TOPICS 

WEB MANAGEMENT

VPN acronym roundup


Tom Lancaster
10.31.2001
Rating: --- (out of 5)


Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   



VPN acronym roundup
Tom Lancaster

With so many VPN technologies and acronyms floating about, trying to keep up with which protocol does what can be quite a chore. In this tip, we have an acronym roundup and explain briefly how these relate to each other and give some clues to help you figure out which technology right for you.

L2F
Layer 2 Forwarding was created by Cisco and submitted to the IETF in '96 (practically pre-historic in Internet-time). Its purpose was to help service providers create Virtual Private Dialup Networks (VPDN).

L2TP
the result of a joint-effort by Cisco and Microsoft, Layer 2 Tunneling Protocol is responsible for creating and managing tunnels. For encryption, it relies on IPSec. L2TP tunnels can operate in voluntary or compulsory mode, but voluntary are much more common. IPSec over L2TP is generally considered more secure than PPTP because of the architecture and strength of keys. This protocol will eventually replace Cisco's L2F and Microsoft's PPTP.

PPTP
A Microsoft standard, the Point-to-Point Tunneling Protocol eventually was defined in an informational RFC. Although generally not well regarded, PPTP does have some strengths. Unlike IPSec, it can encrypt and transport non-IP protocols and it is compatible with Network Address Translation. It is also much more widespread because it's included for free in most Windows operating systems. For better or worse, it can integrate authentication with the Windows NT/2000 domains and unlike L2TP, most PPTP tunnels are compulsory. PPTP is frequently used for both remote-access and for connecting remote offices in an intranet.

PPPoE
Point to Point Protocol over Ethernet is a standard that allows the encapsulation and authentication properties of PPP to be used over other layer 2 technologies such as Ethernet. This technology is used almost exclusively by the xDSL providers.

IPSec
Unlike all the previous examples, IPSec operates at layer 3 instead of layer 2. It is primarily used to encrypt and authenticate traffic using the Encapsulation Security Payload (ESP) but can be used for authentication only with the Authentication Header (AH) protocol. Although very secure, it has some drawbacks. It is incompatible with NAT and it doesn't allow other layer 3 protocols, such as Appletalk or IPX to be encapsulated. (thus the name, IP Sec). A significant advantage of IPSec is strong authentication using smart-cards or Digital Certificates.

GRE
Generic Routing Encapsulation is another layer 3 protocol that is used primarily to encrypt traffic, but it also has the advantage of supporting non-IP protocols.

Thomas Alexander Lancaster IV is a consultant and author with over ten years experience in the networking industry, focused on Internet infrastructure.


Rate this Tip
To rate tips, you must be a member of SearchWindowsServer.com.
Register now to start rating these tips. Log in if you are already a member.


Submit a Tip




Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   



RELATED CONTENT
Web Management
Internet Information Services (IIS) sees big changes in Windows Server 2008
How to keep IIS logs from filling up your server hard drives
A first look at Internet Information Services 7.0
When and how to use worker process recycling with IIS
Fix app problems stemming from Firefox as default browser
Control users' Internet access
Raise Web server performance in Windows Server 2003
Remotely administer IIS with HTML tool
INDEX.DAT tool helps admins see what users browsed in IE
Improving Internet browsing performance

RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary

DISCLAIMER: Our Tips Exchange is a forum for you to share technical advice and expertise with your peers and to learn from other enterprise IT professionals. TechTarget provides the infrastructure to facilitate this sharing of information. However, we cannot guarantee the accuracy or validity of the material submitted. You agree that your use of the Ask The Expert services and your reliance on any questions, answers, information or other materials received through this Web site is at your own risk.



Server Room Design - Planning, Cooling, Maintenance
HomeTopicsBlogsITKnowledge ExchangeTipsAsk the ExpertsMultimediaWhite PapersIT Downloads
About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
SEARCH 
TechTarget provides technology professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective purchase decisions and managing their organizations' technology projects - with its network of technology-specific websites, events and online magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Site Map




All Rights Reserved, Copyright 2004 - 2009, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts