Quantcast
Channel: All SRX Services Gateway posts
Viewing all articles
Browse latest Browse all 17645

Re: Group VPN

$
0
0

Yes.

Standard IPsec security association (SA) is a one way directional agreement and a point-to-point tunnel between two security VPN devices. 

Group VPN is a new category of VPN that introduces the concept of a trusted group to eliminate point-to-point tunnels in a mesh architecture. ). Group VPN works in a client/server architecture where each member in the group maintain individual IKE Phase 1 SA, but they all share a single common Phase 2 security association (SA), also known as a group SA (GSA. Because all the Group Members use the same key, any Member can decrypt the data that is encrypted by any other group member.

What you propose would negate one of the main benefits of Group VPN.


Viewing all articles
Browse latest Browse all 17645

Trending Articles